No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 09 Jun 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 09 Jun 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Backend users with access to the Recycler module were able to restore soft-deleted records on pages or for tables they were not authorized to modify. This issue affects TYPO3 CMS versions before 10.4.57, 11.0.0-11.5.51, 12.0.0-12.4.46, 13.0.0-13.4.31 and 14.0.0-14.3.3. | |
| Title | TYPO3 CMS - Broken Access Control in Recycler | |
| First Time appeared |
Typo3
Typo3 typo3 |
|
| Weaknesses | CWE-862 | |
| CPEs | cpe:2.3:a:typo3:typo3:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Typo3
Typo3 typo3 |
|
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: TYPO3
Published:
Updated: 2026-06-09T13:51:28.134Z
Reserved: 2026-05-19T12:49:25.966Z
Link: CVE-2026-47349
Updated: 2026-06-09T13:51:19.046Z
Status : Deferred
Published: 2026-06-09T11:16:52.720
Modified: 2026-06-09T13:46:50.540
Link: CVE-2026-47349
No data.
OpenCVE Enrichment
Updated: 2026-06-09T13:30:04Z