QID 994895
Date Published: 2023-08-21
QID 994895: PHP (Composer) Security Update for t3/dce (GHSA-v4vm-gj2x-6qhm)
The default configuration in the Dynamic Content Elements (dce) extension before 0.11.5 for TYPO3 allows remote attackers to obtain sensitive installation environment information by reading the update check request.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-v4vm-gj2x-6qhm for updates and patch information.
Vendor References
- GHSA-v4vm-gj2x-6qhm -
github.com/advisories/GHSA-v4vm-gj2x-6qhm
CVEs related to QID 994895
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-v4vm-gj2x-6qhm | t3/dce |
|