Insecure Direct Object Reference in TYPO3 Femanager Extension
CVE-2025-48202
What is CVE-2025-48202?
The Femanager extension for TYPO3 prior to version 8.2.1 contains a vulnerability that permits Insecure Direct Object Reference (IDOR). This issue can lead to unauthorized access to sensitive data by manipulating the parameters the application uses to reference objects. Attackers may exploit this flaw to gain access to user resources or perform unauthorized actions, potentially compromising user privacy and application integrity. It is imperative for TYPO3 users to update to the latest version to maintain security and safeguard against such threats.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
femanager extension 5.5.0 < 5.5.5
femanager extension 6.0.0 < 6.4.1
femanager extension 7.0.0 < 7.4.2
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
