| Level | Info | Betroffene Versionen | Lösung |
|---|---|---|---|
| LowJanuary 28, 2025 | TYPO3-EXT-SA-2025-001: Account Takeover in extension "OpenID Connect Authentication" (oidc) It has been discovered that the extension "OpenID Connect Authentication" (oidc) is susceptible to Account Takeover. | 3.0.0 and below | An updated versions 4.0.0 is available from the TYPO3 extension manager packagist and at https://extensions.typo3.org/extension/download/oidc/4.0.0/zipUsers of the extension are advised to update the extension as soon as possible. |
| MediumJanuary 14, 2025 | TYPO3-CORE-SA-2025-010: Cross-Site Request Forgery in DB Check Module It has been discovered that TYPO3 CMS is susceptible to cross-site request forgery. | 11.0.0-11.5.41 | Update to TYPO3 versions 11.5.42 ELTS that fixes the problem described. |
| HighJanuary 14, 2025 | TYPO3-CORE-SA-2025-009: Cross-Site Request Forgery in Scheduler Module It has been discovered that TYPO3 CMS is susceptible to cross-site request forgery. | 11.0.0-11.5.41 | Update to TYPO3 versions 11.5.42 ELTS that fixes the problem described. |
| MediumJanuary 14, 2025 | TYPO3-CORE-SA-2025-008: Cross-Site Request Forgery in Indexed Search Module It has been discovered that TYPO3 CMS is susceptible to cross-site request forgery. | 11.0.0-11.5.41 12.0.0-12.4.24 13.0.0-13.4.2 | Update to TYPO3 versions 11.5.42 ELTS 12.4.25 LTS 13.4.3 LTS that fix the problem described. |
| MediumJanuary 14, 2025 | TYPO3-CORE-SA-2025-007: Cross-Site Request Forgery in Form Framework Module It has been discovered that TYPO3 CMS is susceptible to cross-site request forgery. | 11.0.0-11.5.41 12.0.0-12.4.24 13.0.0-13.4.2 | Update to TYPO3 versions 11.5.42 ELTS 12.4.25 LTS 13.4.3 LTS that fix the problem described. |
typo3-core t3tsbase ↓ url ↓ hostname ↓ scheduler-status ↓ php-version ↓ db-version ↓ mask ↓ news ↓ t3adminer ↓ fontawesome_provider ↓ ke_search ↓ powermail ↓ femanager ↓ simple_log404 ↓ typo3_console ↓ container ↓ form_element_linked_checkbox ↓ gridelements ↓ mfa_email ↓ numbered_pagination ↓ rte_ckeditor_image ↓ secure_downloads ↓ solr ↓ solradmin ↓ translate_locallang ↓ displaydownloads ↓ hcaptcha ↓ ke_search_premium ↓ phpmyadmin ↓ replacer ↓ solr_file_indexer ↓ sysfilemetadata_addfields ↓ t3gurom ↓ t3massnahmen ↓ tsoffer ↓ tt_address ↓ typo3db_legacy ↓ vhs ↓ SecurityInfos von Typo3.org: 10.4.37 11.2.12 https://www.timespin.de | FE | TYPO3-BE | Wiki live.timespin.de OK (0) 7.4.3-4ubuntu2.28 5.5.5-10.3.39-MariaDB-0ubuntu0.20.04.2 6.6.1 8.5.2 10.4.47 11.2.12 https://awothueringen.de | FE | TYPO3-BE | Wiki km30718.keymachine.de OK (2) 7.4.33 5.5.5-10.3.39-MariaDB-0ubuntu0.20.04.2 6.2.2 8.6.0 10.0.0 4.1.1 6.0.1 2.1.1 10.4.49 11.2.14 https://www.kindersprachbruecke.de | FE | TYPO3-BE | Wiki s1230 OK (3) 7.4.33.8 5.7.35-38 6.4.5 8.5.2 4.0.3 8.5.1 6.7.7 10.4.3 1.4.0 10.4.49 11.2.12 https://www.th-ern.net | FE | TYPO3-BE | Wiki s1134 OK (3) 7.4.33.8 5.7.35-38 5.1.1 8.3.0 4.6.6 8.5.1 6.7.7 10.4.3 5.1.2 11.5.43 11.2.12 https://www.uniwind.org | FE | TYPO3-BE | Wiki s1124 OK (2) 8.1.31 5.7.35-38 8.3.11 11.4.2 12.0.1 1.0.3 10.9.1 8.1.1 2.3.6 12.4.25 12.3.1 https://sgs-institut-fresenius.de | FE | TYPO3-BE | Wiki jones OK (13) 8.2.22 10.3.39-MariaDB-0ubuntu0.20.04.2 9.0.5 12.1.0 12.0.1 1.0.3 1.2.0_TS-Patched 5.0.2 1.0.5 12.0.4 12.0.5 2.0.1 3.1.0 12.4.25 12.3.1 https://sgs-proderm.de | FE | TYPO3-BE | Wiki jones OK (9) 8.2.22 10.3.39-MariaDB-0ubuntu0.20.04.2 9.0.5 12.1.0 12.0.1 1.0.3 1.2.2_TS-Patched 5.0.2 1.0.5 12.0.4 12.0.5 2.0.1 3.1.0 2.2.0 3.0.1 7.0.7 12.4.25 12.3.1 https://www.varys.de | FE | TYPO3-BE | Wiki www527.your-server.de OK (5) 8.2.27 10.11.6-MariaDB-hetzner1 9.0.5 12.1.0 12.0.1 1.0.3 6.2.0 12.5.1 8.2.1 2.3.6_laesst-sich-nicht-auf-3.1.0-updaten 2.1.0 6.1.1 12.2.3 12.4.26 12.3.2 https://www.gurom.de | FE | TYPO3-BE | Wiki www521.your-server.de TO_LATE (4) 8.2.27 10.11.6-MariaDB-hetzner1 9.0.5 12.0.1 1.0.3 8.2.1 1.2.2 12.2.0 12.2.0 1.2.0 12.4.26 12.3.1 https://www.kv-thueringen.de | FE | TYPO3-BE | Wiki www507.your-server.de TASK_FAILURE (8) 8.2.27 10.11.6-MariaDB-hetzner1 8.3.11 11.4.2 12.0.1 1.0.3 5.5.2 8.2.0 2.0.0 5.0.4 12.2.9