piwik
Header Background

TYPO3 News

TYPO3-News

Direct Contact

Let us talk about your next project.

+49 40 4327 3227

TYPO3 Sicherheitsmeldungen

TYPO3.org

TYPO3-CORE-SA-2026-020: Unrestricted File Upload in Form Framework

TYPO3.org
It has been discovered that TYPO3 CMS is susceptible to security misconfiguration.

TYPO3-CORE-SA-2026-019: Broken Access Control in Form Framework

TYPO3.org
It has been discovered that TYPO3 CMS is susceptible to broken access control.

TYPO3-CORE-SA-2026-018: Insecure Deserialization in Core API

TYPO3.org
It has been discovered that TYPO3 CMS is susceptible to broken access control.

TYPO3-CORE-SA-2026-017: Privilege Escalation & SQL Injection in Form Framework

TYPO3.org
It has been discovered that TYPO3 CMS is susceptible to broken access control.

TYPO3-CORE-SA-2026-016: Broken Access Control in File Abstraction Layer

TYPO3.org
It has been discovered that TYPO3 CMS is susceptible to broken access control.

TYPO3-CORE-SA-2026-015: Broken Access Control in Backend API

TYPO3.org
It has been discovered that TYPO3 CMS is susceptible to broken access control.

TYPO3-CORE-SA-2026-014: Broken Access Control in Clipboard

TYPO3.org
It has been discovered that TYPO3 CMS is susceptible to broken access control.

TYPO3-CORE-SA-2026-013: Broken Access Control in Media Module

TYPO3.org
It has been discovered that TYPO3 CMS is susceptible to broken access control.

TYPO3-CORE-SA-2026-012: Broken Access Control in DataHandler

TYPO3.org
It has been discovered that TYPO3 CMS is susceptible to broken access control.

TYPO3-CORE-SA-2026-011: Broken Access Control in Recycler

TYPO3.org
It has been discovered that TYPO3 CMS is susceptible to broken access control.

TYPO3-CORE-SA-2026-010: Cross-Site Scripting in Indexed Search

TYPO3.org
It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting.

TYPO3-CORE-SA-2026-009: Open Redirect in TYPO3 CMS

TYPO3.org
It has been discovered that TYPO3 CMS is susceptible to open redirect.

TYPO3-CORE-SA-2026-008: Broken Access Control in Form Framework

TYPO3.org
It has been discovered that TYPO3 CMS is susceptible to broken access control.

TYPO3-CORE-SA-2026-007: Broken Access Control in File Abstraction Layer

TYPO3.org
It has been discovered that TYPO3 CMS is susceptible to broken access control.

TYPO3-CORE-SA-2026-006: By-passing Cross-Site Scripting Protection in HTML Sanitizer

TYPO3.org
It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting.

TYPO3-EXT-SA-2026-013: Remote Code Execution in extension "Content Element Selector" (ceselector)

TYPO3.org
It has been discovered that the extension "Content Element Selector" (ceselector) is vulnerable to Remote Code Execution.

TYPO3-EXT-SA-2026-012: SQL Injection in extension "Address List" (tt_address)

TYPO3.org
It has been discovered that the extension "Address List" (tt_address) is vulnerable to SQL Injection.

TYPO3-EXT-SA-2026-011: Multiple vulnerabilities in extension "Faceted Search" (ke_search)

TYPO3.org
It has been discovered that the extension "Faceted Search" (ke_search) is vulnerable to XML External Entity injection, Path Traversal and Information Disclosure.