CVE-2026-6553
EUVD-2026-2408121.04.2026, 10:16
Changing backend users' passwords via the user settings module results in storing the cleartext password in the uc and user_settings fields of the be_users database table. This issue affects TYPO3 CMS version 14.2.0.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| typo3 | typo3 | 14.2.0 ≤ 𝑥 < 14.3.0 | CNA |
Common Weakness Enumeration