-Infinity
0

Typo3 TYPO3 CMSTYPO3 CMS - Broken Access Control in Backend and Install Tool

Risk 69
Severity
7.3
First published (updated )

Typo3 TYPO3 CMSTYPO3 CMS - Unrestricted File Upload in Form Framework

Risk 37
Severity
6.3
First published (updated )

composer/typo3/cms-filelistTYPO3 CMS - Broken Access Control in Media Module

Risk 40
Severity
7.1
First published (updated )

Typo3 TYPO3 CMSTYPO3 CMS - Privilege Escalation & SQL Injection in Form Framework

Risk 71
Severity
8.7
First published (updated )

composer/typo3/cms-coreTYPO3 CMS - Insecure Deserialization in Core API

Risk 66
Severity
6.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

composer/typo3/cms-coreTYPO3 CMS - Broken Access Control in File Abstraction Layer

Risk 21
Severity
2.1
First published (updated )

composer/typo3/cms-backendTYPO3 CMS - Broken Access Control in Backend API

Risk 26
Severity
5.3
First published (updated )

composer/typo3/cms-backendTYPO3 CMS - Broken Access Control in Clipboard

Risk 26
Severity
5.3
First published (updated )

composer/typo3/cms-coreTYPO3 CMS - Broken Access Control in DataHandler

Risk 26
Severity
5.3
First published (updated )

composer/typo3/cms-recyclerTYPO3 CMS - Broken Access Control in Recycler

Risk 34
Severity
5.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

composer/typo3/cms-indexed-searchTYPO3 CMS - Cross-Site Scripting in Indexed Search

Risk 32
Severity
5.1
First published (updated )

composer/typo3/cms-coreTYPO3 CMS - Open Redirect in Core Utilities

Risk 26
Severity
5.3
First published (updated )

composer/typo3/cms-formTYPO3 CMS - Broken Access Control in Form Framework

Risk 56
Severity
7.6
First published (updated )

composer/typo3/cms-coreTYPO3 CMS - Destructive Actions on File Mount Folders

Risk 57
Severity
7.2
First published (updated )

composer/typo3/cms-formTYPO3 CMS - Broken Access Control in Form Framework

Risk 56
Severity
7.6
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Typo3 Content Element Selector (ceselector) extensionRemote Code Execution in extension "Content Element Selector" (ceselector)

Risk 80
Severity
9.2
First published (updated )

Typo3 ke_search (Faceted Search) extensionPath Traversal in extension "Faceted Search" (ke_search)

Risk 32
Severity
5.9
First published (updated )

Typo3 News system (news)SQL Injection in extension "News system" (news)

Risk 31
Severity
8.2
EPSS
0.39%
First published (updated )

Typo3 Frontend User Registration (sf_register)Broken Access Control in extension "Frontend User Registration" (sf_register)

Risk 41
Severity
6.9
First published (updated )

Typo3 Site Crawler (crawler)Remote Code Execution in extension "Site Crawler" (crawler)

Risk 46
Severity
7.1
EPSS
0.39%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Typo3 TYPO3 CMSTYPO3 CMS Stores Cleartext Password in User Settings Module

Risk 31
Severity
7.3
EPSS
0.02%
First published (updated )

composer/typo3/cms-coreTYPO3 CMS Allows Insecure Deserialization via Mailer File Spool

Risk 51
Severity
7.8
EPSS
0.02%
First published (updated )

composer/typo3/cms-recyclerTYPO3 CMS Allows Broken Access Control in Recycler Module

Risk 60
Severity
8.1
First published (updated )

composer/typo3/cms-redirectsTYPO3 CMS Allows Broken Access Control in Redirects Module

Risk 39
Severity
6.4
First published (updated )

composer/typo3/cms-backendTYPO3 CMS Allows Broken Access Control in Edit Document Controller

Risk 38
Severity
6.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

composer/codingms/modulesBroken Authentication in extension “Modules” (modules)

Risk 43
Severity
8.2
First published (updated )

Typo3 TYPO3Information Disclosure via CSV Download

Risk 26
Severity
5.3
First published (updated )

composer/typo3/cms-workspacesInformation Disclosure in Workspaces Module

Risk 40
Severity
7.1
First published (updated )

composer/typo3/cms-backendBroken Access Control in Backend AJAX Routes

Risk 79
Severity
8.8
First published (updated )

composer/typo3/cms-coreInformation Disclosure via File Abstraction Layer

Risk 26
Severity
5.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203