TYPO3 CMS Extension Bypasses Subpage Access via Cached Rootline
CVE-2026-56092 Published on August 25, 2026
Broken Access Control in extension "Apache Solr for TYPO3 - Enterprise Search" (solr)
The extension forces empty frontend-group and subpage-inheritance restrictions onto page records during indexer sub-requests, and this forged state was persisted into the shared rootline cache, allowing anonymous visitors to bypass extendToSubpages-inherited access restrictions on cached pages.
Vulnerability Analysis
CVE-2026-56092 is exploitable with network access, and requires small amount of user privileges. This vulnerability is consided to have a high level of attack complexity. The potential impact of an exploit of this vulnerability is considered to have no impact on confidentiality and integrity and availability.
Weakness Type
What is an AuthZ Vulnerability?
The software does not perform an authorization check when an actor attempts to access a resource or perform an action.
CVE-2026-56092 has been classified to as an AuthZ vulnerability or weakness.
Products Associated with CVE-2026-56092
Want to know whenever a new CVE is published for TYPO3? stack.watch will email you.
Affected Versions
Extension "Apache Solr for TYPO3 - Enterprise Search":- Version 13.0.0 and below 13.1.4 is affected.
- Version 12.0.0 and below 12.1.4 is affected.
- Before 11.6.6 is affected.