PT-2025-36690 · Typo3 Cms · Typo3/Cms

Jakub Świes

+1

·

Published

2025-09-09

·

Updated

2025-09-09

·

CVE-2025-59014

CVSS v4.0

5.1

Medium

VectorAV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions: TYPO3 CMS versions 11.0.0 through 11.5.47 TYPO3 CMS versions 12.0.0 through 12.4.36 TYPO3 CMS versions 13.0.0 through 13.4.17
Description: An uncaught exception within the Bookmark Toolbar component allows administrator-level backend users to trigger a denial-of-service condition in the backend user interface. This occurs when saving manipulated data in the bookmark toolbar.
Recommendations: Update TYPO3 CMS to a version later than 11.5.47. Update TYPO3 CMS to a version later than 12.4.36. Update TYPO3 CMS to a version later than 13.4.17.

Fix

DoS

Weakness Enumeration

Related Identifiers

CVE-2025-59014
GHSA-XRCQ-533Q-8RXW

Affected Products

Typo3/Cms