VYPR
Medium severityNVD Advisory· Published Jun 9, 2026· Updated Jun 9, 2026

CVE-2026-47350

CVE-2026-47350

Description

Backend users were able to move records to a different page without having edit permissions on the source page. This issue affects TYPO3 CMS versions 13.0.0-13.4.31 and 14.0.0-14.3.3.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
typo3/cms-corePackagist
>= 13.0.0, < 13.4.3113.4.31
typo3/cms-corePackagist
>= 14.0.0, < 14.3.314.3.3

Affected products

3

Patches

Vulnerability mechanics

References

7

News mentions

1