Security Advisory
CVE-2026-6553
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Changing backend users' passwords via the user settings module results in storing the cleartext password in the uc and user_settings fields of the be_users database table. This issue affects TYPO3 CMS version 14.2.0.