Total vulnerabilities in the database
It has been discovered that t3:// URL handling and typolink functionality are vulnerable to cross-site scripting. Not only regular backend forms are affected but also frontend extensions which use the rendering with typolink.
Software | From | Fixed in |
---|---|---|
![]() |
10.0.0 | 10.2.1 |
![]() |
8.0.0 | 8.7.30 |
![]() |
9.0.0 | 9.5.12 |