typo3/cms-form Security Advisories for v9.3.2 (4)
-
[HIGH] TYPO3 CMS has Broken Access Control in its Form Framework
PKSA-8hzt-dvj5-mc5s CVE-2026-11607 GHSA-pjpj-v387-x4vq
Affected version: >=14.0.0,<14.3.3|>=13.0.0,<13.4.31|>=12.0.0,<12.4.46|>=11.0.0,<11.5.51|<10.4.57
Reported by:
GitHub -
[HIGH] TYPO3 CMS has Broken Access Control in its Form Framework
PKSA-m239-hcqk-kg59 CVE-2026-47346 GHSA-hwvq-2w67-rvxp
Affected version: >=14.0.0,<14.3.3|>=13.0.0,<13.4.31|>=12.0.0,<12.4.46|>=11.0.0,<11.5.51|<10.4.57
Reported by:
GitHub -
[HIGH] Broken Access Control in Form Framework
PKSA-4b8g-5w89-fbw3 CVE-2021-21357 GHSA-3vg7-jw9m-pc3f
Affected version: >=11.0.0,<=11.1.0|>=10.0.0,<=10.4.13|>=9.0.0,<=9.5.24|>=8.0.0,<=8.7.39
Reported by:
GitHub -
[HIGH] Unrestricted File Upload in Form Framework
PKSA-nkrd-9vf5-fnjp CVE-2021-21355 GHSA-2r6j-862c-m2v2
Affected version: >=11.0.0,<=11.1.0|>=10.0.0,<=10.4.13|>=9.0.0,<=9.5.24|>=8.0.0,<=8.7.39
Reported by:
GitHub