CRITICAL9.8
GHSA-7m7g-jq4m-98w5
Apache Solr for TYPO3 (solr) extension is vulnerable to Insecure Unserialize
Quick fix
GHSA-7m7g-jq4m-98w5 — apache-solr-for-typo3/solr: upgrade to the fixed version with the command below.
composer require apache-solr-for-typo3/solr:^2.8.3Details
Unspecified vulnerability in the Apache Solr for TYPO3 (solr) extension before 2.8.3 for TYPO3 has unknown impact and remote attack vectors, related to "Insecure Unserialize."
Are you affected?
Enter the version of the package you're using.
Affected packages
Packagist/apache-solr-for-typo3/solr
Introduced in:
0Fixed in: 2.8.3Fix
composer require apache-solr-for-typo3/solr:^2.8.3References
- https://nvd.nist.gov/vuln/detail/CVE-2013-6288[ADVISORY]
- https://github.com/TYPO3-Solr/ext-solr[PACKAGE]
- https://github.com/TYPO3-Solr/ext-solr/blob/2.8.3/ChangeLog[WEB]
- http://secunia.com/advisories/54978[WEB]
- http://typo3.org/extensions/repository/view/solr[WEB]
- http://typo3.org/teams/security/security-bulletins/typo3-extensions/typo3-ext-sa-2013-009[WEB]
- http://www.securityfocus.com/bid/62674[WEB]