A vulnerability classified as problematic has been found in TYPO3 up to 9.5.54/10.4.53/11.5.47/12.4.36/13.4.17. This impacts the function GeneralUtility::sanitizeLocalUrl. The manipulation leads to open redirect.

This vulnerability is traded as CVE-2025-59013. It is possible to initiate the attack remotely. There is no exploit available.

It is recommended to upgrade the affected component.