Medium severity4.3NVD Advisory· Published May 13, 2020· Updated Jun 17, 2026
CVE-2020-12698
CVE-2020-12698
Description
The direct_mail extension through 5.2.3 for TYPO3 has Broken Access Control for newsletter subscriber tables.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
directmailteam/direct-mailPackagist | < 5.2.4 | 5.2.4 |
Affected products
1Patches
Vulnerability mechanics
References
4- typo3.org/security/advisory/typo3-ext-sa-2020-005nvdPatchVendor AdvisoryWEB
- github.com/advisories/GHSA-9pm8-xcj6-2m33ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2020-12698ghsaADVISORY
- typo3.org/help/security-advisoriesnvdVendor AdvisoryWEB
News mentions
0No linked articles in our index yet.