PT-2024-40509 · Packagist · Typo3/Cms

Published

2024-06-04

·

Updated

2024-06-04

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions No specific software or versions mentioned.
Description The form component is susceptible to Arbitrary File Disclosure due to improper validation of user input. A valid backend user account is required to exploit this issue. Only forms containing upload fields are vulnerable.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

GHSA-WRPF-2X8H-82GR

Affected Products

Typo3/Cms