Security Advisory

CVE-2023-25014

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-02-02 00:00:00
Last updated 2025-03-26 17:37:06
Assigner mitre
State PUBLISHED

Description

An issue was discovered in the femanager extension before 5.5.3, 6.x before 6.3.4, and 7.x before 7.1.0 for TYPO3. Missing access checks in the InvitationController allow an unauthenticated user to delete all frontend users.