Description

Contao is an Open Source CMS. In versions starting from 5.3.0 and prior to 5.3.38 and 5.6.1, under certain conditions, back end users may be able to edit fields of pages and articles without having the necessary permissions. This issue has been patched in versions 5.3.38 and 5.6.1. There are no workarounds.

INFO

Published Date :

2025-08-28T16:32:59.022Z

Last Modified :

2025-08-28T17:16:55.904Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2025-57759 vulnerability.

Vendors Products
Contao
  • Contao

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact