Skip to content
RequestGuard Vulnerabilities
Pricing

typo3fluid/fluid

The TYPO3 Fluid template rendering engine

Composer latest 5.3.2 LGPL-3.0-or-later

Evidence path

Version, exploitation, severity

RequestGuard keeps these facts separate. A KEV match refers to a CVE, while OSV supplies the package and version match.

1

Latest version

5.3.2

No matching published advisory returned

2

Known exploitation

No KEV match

Checked by exact CVE identifier

3

Highest advisory severity

High

2 active advisories

Check an exact version

The registry confirms the version, then OSV checks advisories for that exact value.

Published records

Advisories

2

Cross-Site Scripting through Fluid view helper arguments

Affected range

ECOSYSTEM: introduced 2.0.0; fixed 2.0.8ECOSYSTEM: introduced 2.1.0; fixed 2.1.7ECOSYSTEM: introduced 2.2.0; fixed 2.2.4ECOSYSTEM: introduced 2.3.0; fixed 2.3.7ECOSYSTEM: introduced 2.4.0; fixed 2.4.4

Fixed versions: 2.0.8, 2.1.7, 2.2.4, 2.3.7, 2.4.4, 2.5.11, 2.6.10

Cross-Site Scripting in ternary conditional operator

Affected range

ECOSYSTEM: introduced 2.0.0; fixed 2.0.5ECOSYSTEM: introduced 2.1.0; fixed 2.1.4ECOSYSTEM: introduced 2.2.0; fixed 2.2.1ECOSYSTEM: introduced 2.3.0; fixed 2.3.5ECOSYSTEM: introduced 2.4.0; fixed 2.4.1

Fixed versions: 2.0.5, 2.1.4, 2.2.1, 2.3.5, 2.4.1, 2.5.5, 2.6.1