CVE 8.2 HIGH

Broken Authentication in extension “Modules” (modules)_CVE-2025-12998

8.2 / 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N

Description

Improper Authentication vulnerability in TYPO3 Extension "Modules" codingms/modules.This issue affects Extension "Modules": before 4.3.11, from 5.0.0 before 5.7.4, from 6.0.0 before 6.4.2, from 7.0.0 before 7.5.5.

Basic Information

ID CVE-2025-12998
Source TYPO3
Published Nov 12, 2025 at 11:16
Modified Nov 12, 2025 at 14:13

Affected Product

Vendor TYPO3
Product Extension "Modules"
Affected Versions TYPO3 Extension "Modules" 0
TYPO3 Extension "Modules" 5.0.0
TYPO3 Extension "Modules" 6.0.0
TYPO3 Extension "Modules" 7.0.0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.