| Level | Info | Betroffene Versionen | Lösung |
|---|---|---|---|
| LowOctober 8, 2024 | TYPO3-CORE-SA-2024-012: Information Disclosure in TYPO3 Page Tree It has been discovered that TYPO3 CMS is susceptible to information disclosure. | 10.0.0-10.4.45 11.0.0-11.5.39 12.0.0-12.4.20 13.0.0-13.3.0 | Update to TYPO3 versions 10.4.46 ELTS 11.5.40 LTS 12.4.21 LTS 13.3.1 that fix the problem described. |
| LowOctober 8, 2024 | TYPO3-CORE-SA-2024-011: Denial of Service in TYPO3 Bookmark Toolbar It has been discovered that TYPO3 CMS is susceptible to denial of service. | 10.0.0-10.4.45 11.0.0-11.5.39 12.0.0-12.4.20 13.0.0-13.3.0 | Update to TYPO3 versions 10.4.46 ELTS 11.5.40 LTS 12.4.21 LTS 13.3.1 that fix the problem described. |
| MediumSeptember 17, 2024 | TYPO3-EXT-SA-2024-007: Insecure Direct Object Reference in extension "powermail" (powermail) It has been discovered that the extension "powermail" (powermail) is susceptible to Insecure Direct Object Reference. | 7.5.0 and below 8.0.0 - 8.5.0 9.0.0 - 10.9.0 12.0.0 - 12.4.0 | Updated versions 7.5.1 8.5.1 10.9.1 and 12.4.1 are available from the TYPO3 extension manager packagist and at https://extensions.typo3.org/extension/download/powermail/7.5.1/ziphttps://extensions.typo3.org/extension/download/powermail/8.5.1/ziphttps://extensions.typo3.org/extension/download/powermail/10.9.1/ziphttps://extensions.typo3.org/extension/download/powermail/12.4.1/zipUsers of the extension are advised to update the extension as soon as possible. |
| MediumAugust 27, 2024 | TYPO3-EXT-SA-2024-006: Multiple vulnerabilities in "powermail" (powermail) It has been discovered that the extension "powermail" (powermail) is susceptible to Insecure Direct Object Reference and Broken Access Control. | 7.4.3 and below 8.0.0 - 8.4.2 9.0.0 - 10.8.2 12.0.0 - 12.3.5 | Updated versions 7.5.0 8.5.0 10.9.0 and 12.4.0 are available from the TYPO3 extension manager packagist and at https://extensions.typo3.org/extension/download/powermail/7.5.0/ziphttps://extensions.typo3.org/extension/download/powermail/8.5.0/ziphttps://extensions.typo3.org/extension/download/powermail/10.9.0/zip https://extensions.typo3.org/extension/download/powermail/12.4.0/zipUsers of the extension are advised to update the extension as soon as possible. |
| HighJune 18, 2024 | TYPO3-EXT-SA-2024-005: Multiple vulnerabilities in "Aimeos shop and e-commerce framework" (aimeos) It has been discovered that the extension "Aimeos shop and e-commerce framework" (aimeos) is susceptible to Remote Code Execution and Insecure Direct Object Reference. | 22.10.9 and below 23.0.0 - 23.10.6 24.0.0 - 24.4.1 | Updated versions 22.10.10 23.10.7 and 24.4.2 are available from the TYPO3 extension manager packagist and athttps://extensions.typo3.org/extension/download/aimeos/22.10.10/ziphttps://extensions.typo3.org/extension/download/aimeos/23.10.7/ziphttps://extensions.typo3.org/extension/download/aimeos/24.4.2/zipUsers of the extension are advised to update the extension as soon as possible. |
typo3-core t3tsbase ↓ url ↓ hostname ↓ scheduler-status ↓ php-version ↓ db-version ↓ mask ↓ news ↓ t3adminer ↓ fontawesome_provider ↓ ke_search ↓ powermail ↓ femanager ↓ simple_log404 ↓ typo3_console ↓ container ↓ form_element_linked_checkbox ↓ gridelements ↓ mfa_email ↓ numbered_pagination ↓ rte_ckeditor_image ↓ secure_downloads ↓ solr ↓ solradmin ↓ translate_locallang ↓ displaydownloads ↓ extension_builder ↓ hcaptcha ↓ ke_search_premium ↓ phpmyadmin ↓ replacer ↓ solr_file_indexer ↓ sysfilemetadata_addfields ↓ t3gurom ↓ t3massnahmen ↓ tsoffer ↓ tt_address ↓ typo3db_legacy ↓ vhs ↓ SecurityInfos von Typo3.org: 10.4.37 11.2.12 https://www.timespin.de | FE | TYPO3-BE | Wiki live.timespin.de OK (0) 7.4.3-4ubuntu2.28 5.5.5-10.3.39-MariaDB-0ubuntu0.20.04.2 6.6.1 8.5.2 10.4.47 11.2.12 https://awothueringen.de | FE | TYPO3-BE | Wiki km30718.keymachine.de OK (2) 7.4.33 5.5.5-10.3.39-MariaDB-0ubuntu0.20.04.2 6.2.2 8.6.0 10.0.0 4.1.1 6.0.1 2.1.1 10.4.47 11.2.14 https://www.kindersprachbruecke.de | FE | TYPO3-BE | Wiki s1230 OK (3) 7.4.33.8 5.7.35-38 6.4.5 8.5.2 4.0.3 8.5.1 6.7.7 10.4.3 1.4.0 10.4.47 11.2.12 https://www.th-ern.net | FE | TYPO3-BE | Wiki s1134 OK (3) 7.4.33.8 5.7.35-38 5.1.1 8.3.0 4.6.6 8.5.1 6.7.7 10.4.3 5.1.2 11.5.40 11.2.16 https://www.gurom.de | FE | TYPO3-BE | Wiki www521.your-server.de OK (4) 7.4.33 5.5.5-10.11.6-MariaDB-hetzner1 8.3.11 12.0.1 1.0.3 7.4.0 1.1.2.TS-Patched 11.0.13 11.2.0 11.2.0 1.2.0 11.5.41 11.2.12 https://www.uniwind.org | FE | TYPO3-BE | Wiki s1124 OK (2) 8.1.31 5.7.35-38 8.3.11 11.4.2 12.0.1 1.0.3 10.9.1 8.1.1 2.3.6 12.4.21 12.3.1 https://sgs-institut-fresenius.de | FE | TYPO3-BE | Wiki jones OK (12) 8.2.22 10.3.39-MariaDB-0ubuntu0.20.04.2 8.3.11 11.4.2 12.0.1 1.0.3 1.2.0_TS-Patched 4.0.0 1.0.5 12.0.2_TS-Patched 12.0.5 2.0.1 3.1.0 12.4.21 12.2.7 https://sgs-proderm.de | FE | TYPO3-BE | Wiki jones OK (9) 8.2.22 10.3.39-MariaDB-0ubuntu0.20.04.2 8.3.11 11.4.2 12.0.1 1.0.3 1.2.2_TS-Patched 4.0.0 1.0.5 12.0.2_TS-Patched 12.0.5 2.0.1 3.1.0 2.2.0 3.0.0 7.0.6 12.4.21 12.2.7 https://www.kv-thueringen.de | FE | TYPO3-BE | Wiki www507.your-server.de OK (8) 8.2.27 10.11.6-MariaDB-hetzner1 8.3.11 11.4.2 12.0.1 1.0.3 5.5.2 8.2.0 2.0.0 5.0.4 12.2.8 12.4.21 12.2.2 https://www.varys.de | FE | TYPO3-BE | Wiki www527.your-server.de OK (5) 8.2.27 10.5.26-MariaDB-0+deb11u2 8.3.11 11.4.2 12.0.1 1.0.3 5.5.2 12.4.2 8.2.0 2.3.6 2.0.0 6.0.4 12.2.2