Security advisories Every advisory from the official TYPO3 security feed, newest first. The severity comes from the machine-readable advisory databases; where it is missing there, it stays unknown here.
All levels
Critical
1
High
8
Medium
10
Low
1
Severity unknown
24
All versions
TYPO3 14
6
TYPO3 13
5
TYPO3 12
6
TYPO3 11
6
TYPO3 10
5
TYPO3 9
1 Security High
It has been discovered that TYPO3 CMS is susceptible to broken access control.
TYPO3 Security Advisories
09.06.2026
TYPO3-CORE-SA-2026-019
Security High
It has been discovered that TYPO3 CMS is susceptible to broken access control.
TYPO3 Security Advisories
09.06.2026
TYPO3-CORE-SA-2026-017
Security High
It has been discovered that TYPO3 CMS is susceptible to broken access control.
TYPO3 Security Advisories
09.06.2026
TYPO3-CORE-SA-2026-013
Security High
It has been discovered that TYPO3 CMS is susceptible to broken access control.
TYPO3 Security Advisories
09.06.2026
TYPO3-CORE-SA-2026-008
Security High
It has been discovered that TYPO3 CMS is susceptible to broken access control.
TYPO3 Security Advisories
09.06.2026
TYPO3-CORE-SA-2026-007
Security High
It has been discovered that the extension "Address List" (tt_address) is vulnerable to SQL Injection.
TYPO3 Security Advisories
19.05.2026
TYPO3-EXT-SA-2026-012
Security High
It has been discovered that the extension "News system" (news) is vulnerable to SQL Injection.
TYPO3 Security Advisories
19.05.2026
TYPO3-EXT-SA-2026-010
Security High
It has been discovered that the extension "Site Crawler" (crawler) is vulnerable to Remote Code Execution.
TYPO3 Security Advisories
19.05.2026
TYPO3-EXT-SA-2026-008
Supported until
14.3
Updates until
06/2029
13.4
Updates until
12/2027
12.4
Only ELTS until
04/2030
Full lifecycle