← Back to home
wid-sec-w-2026-1585  ·  Published 2026-05-18  ·  View on BSI CERT-Bund ↗

TYPO3 Extensions: Multiple Vulnerabilities

CVSS N/A NONE

Risk Summary

Ein Angreifer kann mehrere Schwachstellen in TYPO3 Extensions ausnutzen, um beliebigen Programmcode auszuführen, um einen SQL-Injection Angriff durchzuführen, um Informationen offenzulegen, und um Sicherheitsvorkehrungen zu umgehen.

Affected Vendors

TYPO3

Affected Products (36)

TYPO3 · Extension ceselector <6.0.1
TYPO3 · Extension ceselector 6.0.1
TYPO3 · Extension ceselector <5.0.1
TYPO3 · Extension ceselector 5.0.1
TYPO3 · Extension ceselector <4.0.2
TYPO3 · Extension ceselector 4.0.2
TYPO3 · Extension ceselector <3.0.3
TYPO3 · Extension ceselector 3.0.3
TYPO3 · Extension tt_address <10.0.1
TYPO3 · Extension tt_address 10.0.1
TYPO3 · Extension tt_address <9.1.1
TYPO3 · Extension tt_address 9.1.1
TYPO3 · Extension tt_address <8.1.2
TYPO3 · Extension tt_address 8.1.2
TYPO3 · Extension ke_search <7.0.1
TYPO3 · Extension ke_search 7.0.1
TYPO3 · Extension ke_search <6.6.1
TYPO3 · Extension ke_search 6.6.1
TYPO3 · Extension ke_search <5.6.2
TYPO3 · Extension ke_search 5.6.2
TYPO3 · Extension news <14.0.3
TYPO3 · Extension news 14.0.3
TYPO3 · Extension news <13.0.2
TYPO3 · Extension news 13.0.2
TYPO3 · Extension news <12.3.2
TYPO3 · Extension news 12.3.2
TYPO3 · Extension news <11.4.4
TYPO3 · Extension news 11.4.4
TYPO3 · Extension sf_register <14.0.2
TYPO3 · Extension sf_register 14.0.2
TYPO3 · Extension sf_register <13.2.4
TYPO3 · Extension sf_register 13.2.4
TYPO3 · Extension crawler <12.0.11
TYPO3 · Extension crawler 12.0.11
TYPO3 · Extension crawler <11.0.13
TYPO3 · Extension crawler 11.0.13

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more