Extension "Apache Solr for TYPO3 - Enterprise Search" vulnerability

The extension's frontend detail-view document lookup does not apply the current site's siteHash filter or frontend user access filter, unlike the regular search path. A visitor who can obtain or guess a valid Solr document id can retrieve documents through this lookup without the same access restrictions enforced elsewhere.

Published 25 Aug 2026Updated 17 Sep 20261 sources
CVSS 6.3

What happened

The extension's frontend detail-view document lookup does not apply the current site's siteHash filter or frontend user access filter, unlike the regular search path. A visitor who can obtain or guess a valid Solr document id can retrieve documents through this lookup without the same access restrictions enforced elsewhere.

Affected versions

Extension "Apache Solr for TYPO3 - Enterprise Search": 13.0.0 through before 13.1.4 (semver); 12.0.0 through before 12.1.4 (semver); 11.5.0 through before 11.6.6 (semver); before 11.2.8 (semver) Fixed: See vendor advisory.

Why it matters

Review the vendor advisory and exposure of the affected product to determine operational impact.

Detection & mitigation

  • Apply vendor-provided updates or mitigations.
  • Review affected product exposure and access logs.

Public PoC references

No public PoC reference has passed the current publication threshold.