Package Health

in2code/femanager

Modern TYPO3 Frontend User Registration.

Latest 13.3.6PackagistPackagist

88%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

90

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

80

Are you affected? Scan for Free

Health Score Breakdown

Repo issue activitycaution

The repository has 79 open issues, which is a notable backlog; recent activity is modest, with one new and two closed issues plus one new pull request in the last month. This warrants some caution about issue throughput but does not indicate inactivity.

Security policycaution

The repository has no security policy. This is a genuine transparency and vulnerability-reporting gap, though the presence of GitGuardian scanning provides partial compensating security practice.

Token permissionscaution

All three analyzed workflows lack top-level token permission declarations, reducing least-privilege clarity. No workflow declares top-level write access, so this is a hygiene caution rather than a severe workflow risk.

Vulnerabilities

TitleVersionsSeverity
CVE-2025-7900
in2code/femanager is vulnerable to Authorization Bypass Through User-Controlled Key in versions 0.0.0 - 6.4.2, 7.0.0 - 7.5.3 and 8.0.0 - 8.3.1.
0.0.0 - 6.4.27.0.0 - 7.5.38.0.0 - 8.3.1
Medium
CVE-2025-48202
in2code/femanager is vulnerable to Improper Access Control in versions 8.0.0 - 8.2.2, 7.0.0 - 7.4.2, 6.0.0 - 6.4.1 and 5.5.0 - 5.5.5.
5.5.0 - 5.5.56.0.0 - 6.4.17.0.0 - 7.4.2 +1 more
Medium
CVE-2023-50459
in2code/femanager is vulnerable to Security Vulnerability in versions 7.0.0 - 7.2.3.
7.0.0 - 7.2.3
Medium
CVE-2023-45023
in2code/femanager is vulnerable to Improper Authentication in versions 7.0.0 - 7.2.2.
7.0.0 - 7.2.2
Medium
CVE-2023-25013
in2code/femanager is vulnerable to Missing Authentication for Critical Function in versions 0.0.0 - 5.5.3, 6.0.0 - 6.3.4 and 7.0.0 - 7.1.0.
0.0.0 - 5.5.36.0.0 - 6.3.47.0.0 - 7.1.0
High

Package versions

Maintainers

Alex Kellner
Stefan Busemann

Direct Dependencies

DependencyLast ReleaseScore
typo3/cms-seo
Version ^13.4
—
—
symfony/config
Version ^6.4 || ^7.0
—
—
typo3/cms-core
Version ^13.4.0
—
—
typo3/cms-fluid
Version ^13.4.0
—
—
typo3/cms-backend
Version ^13.4.0
—
—

Weekly Downloads

Info

Last Published
27 days ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform