Mittwald's vulnerability profile centers on a narrow product portfolio including TYPO3 Forum and Varnish Cache, with the recurring signal centered on access-control weaknesses such as authorization bypass through user-controlled keys and improper authorization logic. These application-layer defects reflect the authentication and session-management demands of web platforms and caching layers; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Mittwald over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-24979MEDIUM An issue was discovered in the Varnishcache extension before 2.0.1 for TYPO3. The Edge Site Includes (ESI) content element renderer component does not include an access check. This | Feb 19, 2022 | 5.3 | 20 | NO | NO |
CVE-2020-15513MEDIUM The typo3_forum extension before 1.2.1 for TYPO3 has Incorrect Access Control. | Jul 7, 2020 | 5.3 | 20 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Mittwald.
Media articles that mention a CVE ID that affects a product developed by Mittwald — matched by CVE ID, not by vendor name.