CVE-2026-6553
HIGH SEVERITYVulnerability Description
Changing backend users' passwords via the user settings module results in storing the cleartext password in the uc and user_settings fields of the be_users database table. This issue affects TYPO3 CMS version 14.2.0.
Vulnerability Details
Published Date
Last Modified
CWE ID
CWE-312
Source
NVD
Vendor
composer
Product
typo3/cms-backend
Discussion (0)
Add Comment
No comments yet. Be the first!