CVE-2025-10316: TYPO3 Extension Form To Database Form To Database
Low severity, CVSS 2.3. EPSS: 0.3% chance of exploitation in the next 30 days.
The extension "Form to Database" is susceptible to Cross-Site Scripting. This issue affects the following versions: before 2.2.5, from 3.0.0 before 3.2.2, from 4.0.0 before 4.2.3, from 5.0.0 before 5.0.2.
Affected products
- TYPO3 Extension Form To Database Form To Database: before 2.2.5 (fixed in 2.2.5); from 3.0.0, before 3.2.2 (fixed in 3.2.2); from 4.0.0, before 4.2.3 (fixed in 4.2.3); from 5.0.0, before 5.0.2 (fixed in 5.0.2)
Published 2025-09-16. Last modified 2026-06-17.