CVE-2019-11832: TYPO3
High severity, CVSS 7.5. EPSS: 3.9% chance of exploitation in the next 30 days.
TYPO3 8.x before 8.7.25 and 9.x before 9.5.6 allows remote code execution because it does not properly configure the applications used for image processing, as demonstrated by ImageMagick or GraphicsMagick.
Affected products
- TYPO3 TYPO3: from 8.0.0, before 8.7.25 (fixed in 8.7.25); from 9.0.0, before 9.5.6 (fixed in 9.5.6)
Published 2019-05-09. Last modified 2026-06-17.