CVE-2026-0859
- EPSS 0.02%
- Veröffentlicht 13.01.2026 11:54:11
- Zuletzt bearbeitet 14.01.2026 18:57:50
TYPO3's mail‑file spool deserialization flaw lets local users with write access to the spool directory craft a malicious file that is deserialized during the mailer:spool:send command, enabling arbitrary PHP code execution on the web server. This iss...
CVE-2025-59022
- EPSS 0.01%
- Veröffentlicht 13.01.2026 11:53:45
- Zuletzt bearbeitet 14.01.2026 19:07:07
Backend users who had access to the recycler module could delete arbitrary data from any database table defined in the TCA - regardless of whether they had permission to that particular table. This allowed attackers to purge and destroy critical site...
CVE-2025-59021
- EPSS 0.01%
- Veröffentlicht 13.01.2026 11:53:25
- Zuletzt bearbeitet 14.01.2026 19:14:35
Backend users with access to the redirects module and write permission on the sys_redirect table were able to read, create, and modify any redirect record without restriction to the user’s own file-mounts or web-mounts. This allowed attackers to inse...
CVE-2025-59020
- EPSS 0.01%
- Veröffentlicht 13.01.2026 11:53:02
- Zuletzt bearbeitet 14.01.2026 19:15:16
By exploiting the defVals parameter, attackers could bypass field‑level access checks during record creation in the TYPO3 backend. This gave them the ability to insert arbitrary data into prohibited exclude fields of a database table for which the us...
CVE-2025-59019
- EPSS 0.05%
- Veröffentlicht 09.09.2025 09:01:17
- Zuletzt bearbeitet 26.09.2025 14:09:51
Missing authorization checks in the CSV download feature of TYPO3 CMS versions 11.0.0‑11.5.47, 12.0.0‑12.4.36, and 13.0.0‑13.4.17 allow backend users to disclose information from arbitrary database tables stored within the users' web mounts without h...
CVE-2025-59018
- EPSS 0.06%
- Veröffentlicht 09.09.2025 09:01:10
- Zuletzt bearbeitet 26.09.2025 14:08:37
Missing authorization checks in the Workspace Module of TYPO3 CMS versions 9.0.0‑9.5.54, 10.0.0‑10.4.53, 11.0.0‑11.5.47, 12.0.0‑12.4.36, and 13.0.0‑13.4.17 allow backend users to directly invoke the corresponding AJAX backend route to disclose sensit...
CVE-2025-59017
- EPSS 0.08%
- Veröffentlicht 09.09.2025 09:01:03
- Zuletzt bearbeitet 10.09.2025 13:44:43
Missing authorization checks in the Backend Routing of TYPO3 CMS versions 9.0.0‑9.5.54, 10.0.0‑10.4.53, 11.0.0‑11.5.47, 12.0.0‑12.4.36, and 13.0.0‑13.4.17 allow backend users to directly invoke AJAX backend routes without having access to the corresp...
CVE-2025-59016
- EPSS 0.05%
- Veröffentlicht 09.09.2025 09:00:55
- Zuletzt bearbeitet 10.09.2025 13:43:46
Error messages containing sensitive information in the File Abstraction Layer in TYPO3 CMS versions 9.0.0-9.5.54, 10.0.0-10.4.53, 11.0.0-11.5.47, 12.0.0-12.4.36, and 13.0.0-13.4.17 allow backend users to disclose full file paths via failed low-level ...
CVE-2025-59015
- EPSS 0.05%
- Veröffentlicht 09.09.2025 09:00:48
- Zuletzt bearbeitet 10.09.2025 13:42:59
A deterministic three‑character prefix in the Password Generation component of TYPO3 CMS versions 12.0.0–12.4.36 and 13.0.0–13.4.17 reduces entropy, allowing attackers to carry out brute‑force attacks more quickly.
CVE-2025-59014
- EPSS 0.07%
- Veröffentlicht 09.09.2025 09:00:38
- Zuletzt bearbeitet 10.09.2025 13:40:09
An uncaught exception in the Bookmark Toolbar of TYPO3 CMS versions 11.0.0–11.5.47, 12.0.0–12.4.36, and 13.0.0–13.4.17 lets administrator‑level backend users trigger a denial‑of‑service condition in the backend user interface by saving manipulated da...