TYPO3 CMS Core
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2026-11607 typo3/cms-core is vulnerable to Missing Authorization in versions 0.0.0 - 10.4.57, 11.0.0 - 11.5.51, 12.0.0 - 12.4.46, 13.0.0 - 13.4.31 and 14.0.0 - 14.3.3. | 0.0.0 - 10.4.5711.0.0 - 11.5.5112.0.0 - 12.4.46 +2 more | High |
CVE-2026-47349 typo3/cms-core is vulnerable to Missing Authorization in versions 0.0.0 - 10.4.57, 11.0.0 - 11.5.51, 12.0.0 - 12.4.46, 13.0.0 - 13.4.31 and 14.0.0 - 14.3.3. | 0.0.0 - 10.4.5711.0.0 - 11.5.5112.0.0 - 12.4.46 +2 more | Medium |
CVE-2026-47347 typo3/cms-core is vulnerable to URL Redirection to Untrusted Site ('Open Redirect') in versions 0.0.0 - 10.4.57, 11.0.0 - 11.5.51, 12.0.0 - 12.4.46, 13.0.0 - 13.4.31 and 14.0.0 - 14.3.3. | 0.0.0 - 10.4.5711.0.0 - 11.5.5112.0.0 - 12.4.46 +2 more | Medium |
CVE-2026-47343 typo3/cms-core is vulnerable to Missing Authorization in versions 0.0.0 - 10.4.57, 11.0.0 - 11.5.51, 12.0.0 - 12.4.46, 13.0.0 - 13.4.31 and 14.0.0 - 14.3.3. | 0.0.0 - 10.4.5711.0.0 - 11.5.5112.0.0 - 12.4.46 +2 more | High |
CVE-2026-49741 typo3/cms-core is vulnerable to Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in versions 14.0.0 - 14.3.3. | 14.0.0 - 14.3.3 | High |
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^3.0.1 | — | — |
symfony/uid Version ^7.4.8 | — | — |
symfony/mime Version ^7.4.12 | — | — |
symfony/yaml Version ^7.4.12 | — | — |
doctrine/dbal Version ~4.4.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant