Skip to main content

Daily materialized evidence profile

Vendor typo3

This factual profile is rebuilt from stored cvebuzz evidence each day. It is a timestamped snapshot, not an immutable publication.

Refreshed UTC

Stored evidence summary

Sample size
518
CVEs with mentions
8
Total mentions
18
CVEs with KEV
0
CVEs with PoC
0

Attack vector counts

Network
516
Adjacent network
0
Local
2
Physical
0

Top snapshot Buzz entries

Up to five denormalized entries captured by the same daily profile refresh.

CVE-2026-0859

Published Jan 13, 2026

TYPO3's mail‑file spool deserialization flaw lets local users with write access to the spool directory craft a malicious file that is deserialized during the mailer:spool:send com…

CVSS 5.2 · Medium
evidence mentions
4
Buzz score
26.1

CVE-2025-47936

Published May 20, 2025

TYPO3 is an open source, PHP based web content management system. In versions on the 12.x branch prior to 12.4.31 LTS and the 13.x branch prior to 13.4.2 LTS, Webhooks are inheren…

CVSS 3.3 · Low
evidence mentions
2
Buzz score
21.0

CVE-2025-47937

Published May 20, 2025

TYPO3 is an open source, PHP based web content management system. Starting in version 9.0.0 and prior to versions 9.5.51 ELTS, 10.4.50 ELTS, 11.5.44 ELTS, 12.4.31 LTS, and 13.4.12…

CVSS 3.7 · Low
evidence mentions
2
Buzz score
21.0

CVE-2025-47938

Published May 20, 2025

TYPO3 is an open source, PHP based web content management system. Starting in version 9.0.0 and prior to versions 9.5.51 ELTS, 10.4.50 ELTS, 11.5.44 ELTS, 12.4.31 LTS, and 13.4.12…

CVSS 3.8 · Low
evidence mentions
2
Buzz score
21.0

CVE-2025-47939

Published May 20, 2025

TYPO3 is an open source, PHP based web content management system. By design, the file management module in TYPO3’s backend user interface has historically allowed the upload of an…

CVSS 5.4 · Medium
evidence mentions
2
Buzz score
21.0