CVE-2026-6553
Changing backend users' passwords via the user settings module results in storing the cleartext password in the uc and u
Changing backend users' passwords via the user settings module results in storing the cleartext password in the uc and user_settings fields of the be_users database table. This issue affects TYPO3 CMS version 14.2.0.
HIGH · CVSS 7.5
EPSS 0.0002
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0