Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-34537


TYPO3 before 13.3.1 allows denial of service (interface error) in the Bookmark Toolbar (ext:backend), exploitable by an administrator-level backend user account via manipulated data saved in the bookmark toolbar of the backend user interface. The fixed versions are 10.4.46 ELTS, 11.5.40 LTS, 12.4.21 LTS, and 13.3.1.


Published

2024-10-28T14:15:04.740

Last Modified

2025-09-03T17:31:07.133

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 4.9 (MEDIUM)

Weaknesses
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application typo3 typo3 < 10.4.46 Yes
Application typo3 typo3 < 11.5.40 Yes
Application typo3 typo3 < 12.4.21 Yes
Application typo3 typo3 < 13.3.1 Yes

References