Insecure service configuration In typo3/cms
Description
TYPO3 is susceptible to Cross-Site Flashing The flashplayer misses to validate flash and image files. Therefore it is possible to embed flash videos from external domains.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
packagist | 6.2.16 |
Aliases
1.
References
1. 2. 3.