Skip to content
RequestGuard Vulnerabilities
Pricing

typo3/cms-beuser

TYPO3 CMS Backend User - TYPO3 backend module System>Backend Users for managing backend users and groups.

Composer latest 13.4.35 GPL-2.0-or-later

Evidence path

Version, exploitation, severity

RequestGuard keeps these facts separate. A KEV match refers to a CVE, while OSV supplies the package and version match.

1

Latest version

13.4.35

No matching published advisory returned

2

Known exploitation

No KEV match

Checked by exact CVE identifier

3

Highest advisory severity

Moderate

2 active advisories

Check an exact version

The registry confirms the version, then OSV checks advisories for that exact value.

Published records

Advisories

2

TYPO3 backend modules have Broken Access Control

Affected range

ECOSYSTEM: introduced 13.0.0; fixed 13.4.18ECOSYSTEM: introduced 12.0.0; fixed 12.4.37ECOSYSTEM: introduced 11.0.0; fixed 12.4.37ECOSYSTEM: introduced 10.0.0; fixed 12.4.37ECOSYSTEM: introduced 9.0.0; fixed 12.4.37

Fixed versions: 13.4.18, 12.4.37

TYPO3 Cross-Site Request Forgery in Backend User Module

Affected range

ECOSYSTEM: introduced 10.0.0; fixed 10.4.48ECOSYSTEM: introduced 11.0.0; fixed 11.5.42ECOSYSTEM: introduced 12.0.0; fixed 12.4.25ECOSYSTEM: introduced 13.0.0; fixed 13.4.3>=13.0.0,<=13.4.2|>=12.0.0,<=12.4.24|>=11.0.0,<=11.5.41|>=10.0.0,<=10.4.47

Fixed versions: 10.4.48, 11.5.42, 12.4.25, 13.4.3