Package impact
Packagist / georgringer/news
| CVE | Severity | CVSS | Risk | Flags | OS | Vendor | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2013-4748 | high | — | 7.5 | 13y ago | News system (news) extension for TYPO3 vulnerable to SQL Injection | |||
| CVE-2026-8726 | unknown | — | — | 10d ago | The extension fails to properly sanitize user input before using it in a database query. As a result, an unauthenticated attacker can inject arbitrary SQL through a URL parameter on pages using the "… |