Contao · Contao · CVE-2025-57756
Name of the Vulnerable Software and Affected Versions:
Contao versions prior to 4.13.56
Contao versions prior to 5.3.38
Contao versions prior to 5.6.1
Contao versions starting from 4.9.14 through 5.6.1
Description:
Protected content elements rendered as fragments are indexed and become publicly available in the front end search.
Recommendations:
Update to Contao version 4.13.56.
Update to Contao version 5.3.38.
Update to Contao version 5.6.1.
Disable the front end search.