MEDIUM
GHSA-3jxq-5xhh-9jr3
Cross-Site Scripting (XSS) in TYPO3 component Backend
Quick fix
GHSA-3jxq-5xhh-9jr3 — typo3/cms: upgrade to the fixed version with the command below.
composer require typo3/cms:^6.2.19Details
Failing to properly encode incoming data, the bookmark toolbar is susceptible to Cross-Site Scripting.
Are you affected?
Enter the version of the package you're using.