296,747
Total vulnerabilities in the database
The swiftmailer library in use allows to execute arbitrary shell commands if the "From" header comes from a non-trusted source and no "Return-Path" is configured. Affected are only TYPO3 installation the configuration option
$GLOBALS['TYPO3_CONF_VARS']['MAIL']['transport']
is set to "sendmail". Installations with the default configuration are not affected.
| Software | From | Fixed in |
|---|---|---|
typo3 / cms
|
6.2.0 | 6.2.6 |
typo3 / cms
|
6.1.0 | 6.1.12 |
typo3 / cms
|
4.7.0 | 4.7.20 |
typo3 / cms
|
4.5.0 | 4.5.37 |