NONE · 0

CVE-2026-47349

Backend users with access to the Recycler module were able to restore soft-deleted records on pages or for tables they were not authorized to modify. This issue affects TYPO3 CMS versions before 10.4....

Vulnerability Description

Backend users with access to the Recycler module were able to restore soft-deleted records on pages or for tables they were not authorized to modify. This issue affects TYPO3 CMS versions before 10.4.57, 11.0.0-11.5.50, 12.0.0-12.4.45, 13.0.0-13.4.30 and 14.0.0-14.3.2.

Related Weaknesses (CWE)

References

FAQ

What is CVE-2026-47349?

CVE-2026-47349 is a documented vulnerability. Backend users with access to the Recycler module were able to restore soft-deleted records on pages or for tables they were not authorized to modify. This issue affects TYPO3 CMS versions before 10.4....

How severe is CVE-2026-47349?

CVSS scoring is not yet available for CVE-2026-47349. Check NVD for updates.

Is there a patch for CVE-2026-47349?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.