CVE-2022-31049
published 2022-06-14CVE-2022-31049: TYPO3 is an open source web content management system. Prior to versions 9.5.34 ELTS, 10.4.29, and 11.5.11, user submitted content was used without being…
PriorityP426medium5.4CVSS 3.1
AVNACLPRLUIRSCCLILAN
EPSS
0.71%
49.0th percentile
TYPO3 is an open source web content management system. Prior to versions 9.5.34 ELTS, 10.4.29, and 11.5.11, user submitted content was used without being properly encoded in HTML emails sent to users. The actually affected components were mail clients used to view those messages. TYPO3 versions 9.5.34 ELTS, 10.4.29, and 11.5.11 contain a fix for the problem.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| typo3 | cms | >= 10.0.0 < 10.4.29 | 10.4.29 |
| typo3 | cms | >= 11.0.0 < 11.5.11 | 11.5.11 |
| typo3 | cms-core | >= 10.0.0 < 10.4.29 | 10.4.29 |
| typo3 | cms-core | >= 11.0.0 < 11.5.11 | 11.5.11 |
| typo3 | cms-core | >= 9.0.0 < 9.5.35 | 9.5.35 |
| typo3 | typo3 | — | — |
| typo3 | typo3 | — | — |
| typo3 | typo3 | — | — |
| typo3 | typo3 | >= 10.0.0 < 10.4.29 | 10.4.29 |
| typo3 | typo3 | >= 11.0.0 < 11.5.11 | 11.5.11 |
| typo3 | typo3 | >= 9.0.0 < 9.5.35 | 9.5.35 |
CVSS provenance
nvdv3.15.4MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
nvdv2.03.5LOWAV:N/AC:M/Au:S/C:N/I:P/A:N
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
Cross-Site Scripting in TYPO3's Frontend Login Mailer
osv·2022-06-17
CVE-2022-31049 [MEDIUM] Cross-Site Scripting in TYPO3's Frontend Login Mailer
Cross-Site Scripting in TYPO3's Frontend Login Mailer
> ### Meta
> * CVSS: `CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N/E:F/RL:O/RC:C` (4.9)
### Problem
User submitted content was used without being properly encoded in HTML emails sent to users. The actually affected components were mail clients used to view those messages.
### Solution
Update to TYPO3 versions 9.5.35 ELTS, 10.4.29, 11.5.11 that fix the problem described above.
### Credits
Thanks to Christian Seifert who reported this issue and to TYPO3 framework merger Andreas Fernandez who fixed the issue.
### References
* [TYPO3-CORE-SA-2022-004](https://typo3.org/security/advisory/typo3-core-sa-2022-004)
GHSA
Cross-Site Scripting in TYPO3's Frontend Login Mailer
ghsa·2022-06-17
CVE-2022-31049 [MEDIUM] CWE-79 Cross-Site Scripting in TYPO3's Frontend Login Mailer
Cross-Site Scripting in TYPO3's Frontend Login Mailer
> ### Meta
> * CVSS: `CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N/E:F/RL:O/RC:C` (4.9)
### Problem
User submitted content was used without being properly encoded in HTML emails sent to users. The actually affected components were mail clients used to view those messages.
### Solution
Update to TYPO3 versions 9.5.35 ELTS, 10.4.29, 11.5.11 that fix the problem described above.
### Credits
Thanks to Christian Seifert who reported this issue and to TYPO3 framework merger Andreas Fernandez who fixed the issue.
### References
* [TYPO3-CORE-SA-2022-004](https://typo3.org/security/advisory/typo3-core-sa-2022-004)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://github.com/TYPO3/typo3/commit/da611775f92102d7602713003f4c79606c8a445dhttps://github.com/TYPO3/typo3/security/advisories/GHSA-h4mx-xv96-2jgmhttps://typo3.org/security/advisory/typo3-core-sa-2022-004https://github.com/TYPO3/typo3/commit/da611775f92102d7602713003f4c79606c8a445dhttps://github.com/TYPO3/typo3/security/advisories/GHSA-h4mx-xv96-2jgmhttps://typo3.org/security/advisory/typo3-core-sa-2022-004
2022-06-14
Published