CVE-2020-16095: Kitodo Kitodo.presentation

Medium severity, CVSS 6.1. EPSS: 0.9% chance of exploitation in the next 30 days.

The dlf (aka Kitodo.Presentation) extension before 3.1.2 for TYPO3 allows XSS.

Affected products

  • Kitodo Kitodo.presentation: before 3.1.2 (fixed in 3.1.2)

Published 2020-07-29. Last modified 2026-06-17.