Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Ingo Schmitt

#40606of 53,633
6.5Total CVSS
Vulnerabilities · 1
PT-2021-19916
6.5
2021-07-20
Typo3 · Typo3 · CVE-2021-32767
**Name of the Vulnerable Software and Affected Versions** TYPO3 versions 9.0.0 through 9.5.27 TYPO3 versions 10.0.0 through 10.4.17 TYPO3 versions 11.0.0 through 11.3.0 **Description** The issue concerns the logging of user credentials in plain-text when the log level is set to debug, which is not the default configuration. **Recommendations** Update to TYPO3 version 9.5.28 to resolve the issue for versions 9.0.0 through 9.5.27. Update to TYPO3 version 10.4.18 to resolve the issue for versions 10.0.0 through 10.4.17. Update to TYPO3 version 11.3.1 to resolve the issue for versions 11.0.0 through 11.3.0.