CVE-2012-3530: TYPO3
Medium severity, CVSS 4.3. EPSS: 1.6% chance of exploitation in the next 30 days.
Incomplete blacklist vulnerability in the t3lib_div::quoteJSvalue API function in TYPO3 4.5.x before 4.5.19, 4.6.x before 4.6.12 and 4.7.x before 4.7.4 allows remote attackers to conduct cross-site scripting (XSS) attacks via certain HTML5 JavaScript events.
Affected products
- TYPO3 TYPO3: version 4.5 only; version 4.5.0 only; version 4.5.1 only; version 4.5.2 only; version 4.5.3 only; version 4.5.4 only; …
Published 2012-09-05. Last modified 2026-06-16.