Typo3 · Typo3 · CVE-2021-32767
**Name of the Vulnerable Software and Affected Versions**
TYPO3 versions 9.0.0 through 9.5.27
TYPO3 versions 10.0.0 through 10.4.17
TYPO3 versions 11.0.0 through 11.3.0
**Description**
The issue concerns the logging of user credentials in plain-text when the log level is set to debug, which is not the default configuration.
**Recommendations**
Update to TYPO3 version 9.5.28 to resolve the issue for versions 9.0.0 through 9.5.27.
Update to TYPO3 version 10.4.18 to resolve the issue for versions 10.0.0 through 10.4.17.
Update to TYPO3 version 11.3.1 to resolve the issue for versions 11.0.0 through 11.3.0.