Close Menu
    DevStackTipsDevStackTips
    • Home
    • News & Updates
      1. Tech & Work
      2. View All

      Design Guidelines For Better Notifications UX

      July 7, 2025

      10 Top React.js Development Service Providers For Your Next Project In 2026

      July 7, 2025

      Top 7 Mistakes Enterprises Make When Outsourcing React.js Development

      July 7, 2025

      10 Top Node.js Development Companies for Enterprise-Scale Projects (2025-2026 Ranked & Reviewed)

      July 4, 2025

      5 ways to be great AI agent manager, according to business leaders

      July 7, 2025

      10 discounted gadgets I use regularly as a handyman (and why they make such a big difference)

      July 7, 2025

      How Let’s Encrypt made the internet safer and HTTPS standard – and free

      July 7, 2025

      How I used ChatGPT to quickly fix a critical open-source plugin – without touching a line of code

      July 7, 2025
    • Development
      1. Algorithms & Data Structures
      2. Artificial Intelligence
      3. Back-End Development
      4. Databases
      5. Front-End Development
      6. Libraries & Frameworks
      7. Machine Learning
      8. Security
      9. Software Engineering
      10. Tools & IDEs
      11. Web Design
      12. Web Development
      13. Web Security
      14. Programming Languages
        • PHP
        • JavaScript
      Featured

      Carolina Contreras Landinez Champions Growth and Builds Strong Teams Through Mentorship

      July 7, 2025
      Recent

      Carolina Contreras Landinez Champions Growth and Builds Strong Teams Through Mentorship

      July 7, 2025

      Laravel Request Content Type Inspection Methods

      July 7, 2025

      The Pipe Operator is Coming to PHP 8.5

      July 7, 2025
    • Operating Systems
      1. Windows
      2. Linux
      3. macOS
      Featured

      Benchmarking the Orange Pi R2S Single Board Computer

      July 7, 2025
      Recent

      Benchmarking the Orange Pi R2S Single Board Computer

      July 7, 2025

      Distribution Release: Parrot 6.4

      July 7, 2025

      Packet is the Linux App You Didn’t Know You Needed for Fast Android File Transfers

      July 7, 2025
    • Learning Resources
      • Books
      • Cheatsheets
      • Tutorials & Guides
    Home»Security»Common Vulnerabilities and Exposures (CVEs)»CVE-2025-47937 – TYPO3 Table Query Privilege Escalation Vulnerability

    CVE-2025-47937 – TYPO3 Table Query Privilege Escalation Vulnerability

    May 20, 2025

    CVE ID : CVE-2025-47937

    Published : May 20, 2025, 2:15 p.m. | 34 minutes ago

    Description : TYPO3 is an open source, PHP based web content management system. Starting in version 9.0.0 and prior to versions 9.5.51 ELTS, 10.4.50 ELTS, 11.5.44 ELTS, 12.4.31 LTS, and 13.4.12 LTS, when performing a database query involving multiple tables through the database abstraction layer (DBAL), frontend user permissions are only applied via `FrontendGroupRestriction` to the first table. As a result, data from additional tables included in the same query may be unintentionally exposed to unauthorized users. Users should update to TYPO3 version 9.5.51 ELTS, 10.4.50 ELTS, 11.5.44 ELTS, 12.4.31 LTS, or 13.4.12 LTS to fix the problem.

    Severity: 3.7 | LOW

    Visit the link for more details, such as CVSS details, affected products, timeline, and more…

    Source: Read More

    Facebook Twitter Reddit Email Copy Link
    Previous ArticleCVE-2025-47941 – TYPO3 Backend MFA Bypass Vulnerability
    Next Article CVE-2025-47940 – TYPO3 Privileged Access Escalation Vulnerability

    Related Posts

    Common Vulnerabilities and Exposures (CVEs)

    CVE-2024-43334 – Gavias Halpes Cross-site Scripting (XSS)

    July 7, 2025
    Common Vulnerabilities and Exposures (CVEs)

    CVE-2025-3044 – ArxivReader MD5 Hash Collision Vulnerability

    July 7, 2025
    Leave A Reply Cancel Reply

    For security, use of Google's reCAPTCHA service is required which is subject to the Google Privacy Policy and Terms of Use.

    Continue Reading

    Rilasciata SteamOS 3.7.8: Miglioramenti e Nuove Funzionalità

    Linux

    Ubuntu 25.10 Daily Builds Now Available to Download

    Linux

    CVE-2025-6702 – “Litemall Remote Unauthorized Access Vulnerability”

    Common Vulnerabilities and Exposures (CVEs)

    Laravel’s in_array_keys Rule: Validating Partial Array Keys

    Development

    Highlights

    Web Design Will Become the Art of Profiling the User

    June 24, 2025

    The next evolution of web design isn’t about looks — it’s about knowing you better…

    CVE-2025-2772 – BEC Technologies Router Credentials Disclosure Vulnerability

    April 23, 2025

    CVE-2025-3094 – CVE-2019-16278: Adobe Flash Player Unvalidated Input

    July 5, 2025

    Is The Alters on Game Pass?

    May 21, 2025
    © DevStackTips 2025. All rights reserved.
    • Contact
    • Privacy Policy

    Type above and press Enter to search. Press Esc to cancel.