VYPR

event plugin

by TYPO3

CVEs (1)

  • CVE-2026-77129HigAug 25, 2026
    risk 0.50cvss —epss 0.00

    The extension passes an editor-configurable email subject string directly into a Fluid template source without restriction. A backend user with edit access to the event plugin or Backend Module can supply Fluid ViewHelper syntax in this field to disclose sensitive data or…