| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-6553 | TYPO3 CMS Stores Cleartext Password in User Settings Module | TYPO3 | TYPO3 CMS | - | - | 2026-04-21 10:04:03 | Deep Dive |
| CVE-2026-4208 | Authentication Bypass in extension "E-Mail MFA Provider" (mfa_email) | TYPO3 | Extension "E-Mail MFA Provider" | - | - | 2026-03-17 08:34:52 | Deep Dive |
| CVE-2026-4202 | Broken Access Control in extension "Redirect Tab" | TYPO3 | Extension "Redirect Tabs" | - | - | 2026-03-17 08:33:41 | Deep Dive |
| CVE-2026-1323 | Insecure Deserialization in extension "Mailqueue" (mailqueue) | TYPO3 | Extension "Mailqueue" | - | - | 2026-03-17 08:33:05 | Deep Dive |
| CVE-2026-0895 | Insecure Deserialization in extension "Mailqueue" (mailqueue) | TYPO3 | Extension "Mailqueue" | - | - | 2026-01-20 07:19:01 | Deep Dive |
| CVE-2026-0859 | TYPO3 CMS Allows Insecure Deserialization via Mailer File Spool | TYPO3 | TYPO3 CMS | - | - | 2026-01-13 11:54:11 | Deep Dive |
| CVE-2025-59022 | TYPO3 CMS Allows Broken Access Control in Recycler Module | TYPO3 | TYPO3 CMS | - | - | 2026-01-13 11:53:45 | Deep Dive |
| CVE-2025-59021 | TYPO3 CMS Allows Broken Access Control in Redirects Module | TYPO3 | TYPO3 CMS | - | - | 2026-01-13 11:53:26 | Deep Dive |
| CVE-2025-59020 | TYPO3 CMS Allows Broken Access Control in Edit Document Controller | TYPO3 | TYPO3 CMS | - | - | 2026-01-13 11:53:02 | Deep Dive |
| CVE-2025-12998 | Broken Authentication in extension “Modules” (modules) | TYPO3 | Extension "Modules" | 中危 | - | 2025-11-12 11:16:59 | Deep Dive |
| CVE-2025-10316 | Cross-Site Scripting in extension "Form to Database" (form_to_database) | TYPO3 | Extension "Form to Database" (form_to_database) | - | - | 2025-09-16 09:09:33 | Deep Dive |
| CVE-2025-59019 | Information Disclosure via CSV Download | TYPO3 | TYPO3 CMS | - | - | 2025-09-09 09:01:18 | Deep Dive |
| CVE-2025-59018 | Information Disclosure in Workspaces Module | TYPO3 | TYPO3 CMS | - | - | 2025-09-09 09:01:10 | Deep Dive |
| CVE-2025-59017 | Broken Access Control in Backend AJAX Routes | TYPO3 | TYPO3 CMS | - | - | 2025-09-09 09:01:04 | Deep Dive |
| CVE-2025-59016 | Information Disclosure via File Abstraction Layer | TYPO3 | TYPO3 CMS | - | - | 2025-09-09 09:00:56 | Deep Dive |
| CVE-2025-59015 | Insufficient Entropy in Password Generation | TYPO3 | TYPO3 CMS | - | - | 2025-09-09 09:00:49 | Deep Dive |
| CVE-2025-59014 | Denial of Service in TYPO3 Bookmark Toolbar | TYPO3 | TYPO3 CMS | - | - | 2025-09-09 09:00:39 | Deep Dive |
| CVE-2025-59013 | Open Redirect in TYPO3 CMS | TYPO3 | TYPO3 CMS | - | - | 2025-09-09 09:00:23 | Deep Dive |
| CVE-2025-9573 | Command Injection in extension "TYPO3 Backup Plus" (ns_backup) | TYPO3 | Extension "TYPO3 Backup Plus" | - | - | 2025-09-02 08:42:56 | Deep Dive |
| CVE-2025-7900 | Insecure Direct Object Reference in extension "femanager" (femanager) | TYPO3 | Extension "femanager" | 中危 | - | 2025-07-22 10:21:32 | Deep Dive |