Multiples vulnérabilités dans Typo3 (18 août 2026)
Multiple vulnerabilities have been discovered in Typo3, allowing attackers to bypass security policies. These flaws require immediate patching to prevent exploitation and potential security breaches. The French CERT has released security advisories detailing the affected versions and providing mitigation steps.
Multiple security vulnerabilities have been identified within the Typo3 platform. These weaknesses enable attackers to circumvent existing security policies, potentially leading to unauthorized access and system compromise. The French CERT (CERT-FR) has issued security advisories to inform users and recommend corrective actions.
Specifically, Typo3 versions prior to 13.4.34 and 14.3.6 are affected. The CERT-FR has linked to the security advisories on GitHub: https://github.com/TYPO3/typo3/security/advisories/GHSA-68jx-f42c-7599 and https://github.com/TYPO3/typo3/security/advisories/GHSA-mfqj-cqv3-h7xw. The vulnerabilities are identified by CVE-2026-15305 and CVE-2026-19418. Users are advised to consult the linked advisories for detailed information and to apply the recommended patches immediately.