Packagist (Composer) package
sjbr/sr-freecap
pkg:composer/sjbr/sr-freecap
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2019-16699 | — | >= 2.5.0, < 2.5.3 | 2.5.3 | Oct 16, 2019 | The sr_freecap (aka freeCap CAPTCHA) extension 2.4.5 and below and 2.5.2 and below for TYPO3 fails to sanitize user input, which allows execution of arbitrary Extbase actions, resulting in Remote Code Execution. | ||
| CVE-2009-3818 | — | < 1.2.2 | 1.2.2 | Oct 28, 2009 | Unspecified vulnerability in the session handling feature in freeCap CAPTCHA (sr_freecap) extension 1.2.0 and earlier for TYPO3 has unknown impact and attack vectors. |
- CVE-2019-16699Oct 16, 2019affected >= 2.5.0, < 2.5.3fixed 2.5.3
The sr_freecap (aka freeCap CAPTCHA) extension 2.4.5 and below and 2.5.2 and below for TYPO3 fails to sanitize user input, which allows execution of arbitrary Extbase actions, resulting in Remote Code Execution.
- CVE-2009-3818Oct 28, 2009affected < 1.2.2fixed 1.2.2
Unspecified vulnerability in the session handling feature in freeCap CAPTCHA (sr_freecap) extension 1.2.0 and earlier for TYPO3 has unknown impact and attack vectors.