296,172
Total vulnerabilities in the database
The swiftmailer library in use allows to execute arbitrary shell commands if the "From" header comes from a non-trusted source and no "Return-Path" is configured. Affected are only TYPO3 installation the configuration option
$GLOBALS['TYPO3_CONF_VARS']['MAIL']['transport']
is set to "sendmail". Installations with the default configuration are not affected.
Software | From | Fixed in |
---|---|---|
![]() |
6.2.0 | 6.2.6 |
![]() |
6.1.0 | 6.1.12 |
![]() |
4.7.0 | 4.7.20 |
![]() |
4.5.0 | 4.5.37 |