CNNVD-202509-1410 Information

CNNVD ID

CNNVD-202509-1410

CVE-2025-59019

  • CNNVD Published: 2025-09-09

Description (Chinese)

TYPO3 CMS是TYPO3开源的一个内容管理系统。 TYPO3 CMS 11.5.47及之前版本、12.4.36及之前版本和13.4.17及之前版本存在安全漏洞,该漏洞源于CSV下载功能缺少授权检查,可能导致数据库信息泄露。

Description (English)

TYPO3 CMS is a TYPO3 open source content management system. TYPO3 CMS 11.5.47 There is a security loophole in previous, 12.4.36 and previous and 13.4.17 and earlier versions, which stems from the lack of authorization checks for CSV downloads, which may lead to the disclosure of database information.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

TYPO3

Published

2025-09-09

Last Modified

2026-02-24

References

https://typo3.org/security/advisory/typo3-core-sa-2025-022 https://vigilance.fr/vulnerability/TYPO3-Core-information-disclosure-via-CSV-Download-48167

Patch

https://get.typo3.org/

Share on: