Skip to main navigation Skip to main content Skip to page footer

TYPO3 News & Events Hub

What’s New & What’s Coming

TYPO3 4.1.2 and 4.0.7

The TYPO3 Core Team announces versions 4.1.2 and 4.0.7 of the TYPO3 Enterprise Content Management System.

Read more

Information Disclosure from phpmyadmin

An information disclosure issue has been found in the phpmyadmin extension of TYPO3 that may give access to phpinfo() information in special cases. The standalone version of phpmyadmin is not affected.

Cross Site Scripting vulnerability in faq

It has been discovered that the extension faq is susceptible to cross site scripting (XSS) attacks, making it possible to execute arbitrary JavaScript.

Multiple vulnerabilities in civserv

Multiple vulnerabilities has been found in the extension civserv: Incorrect handling of input from GET/POST-variables, and allowing an attacker to execute XSS and/or SQL Injection attacks.

Incorrect authentication

It has been discovered that the extension ftpbrowser is doing incorrect authentication in some files, making it open for exploiting.

Last call for papers

The deadline for sending in your proposition for a talk or a tutorial at T3CON07 is closing in rapidly, but we're still open for suggestions! So if you were still doubting if your concept for a talk is interesting for the TYPO3 crowd, let us in by...

T3BOARD08 Registration now open!

The next snowboard Tour will take place from Sunday 30.th of March to Sunday 06.th of April 2008 at the Mountainhostel Crap Sogn Gion. Details about the tour and registration can be found here:

Carrier failure causes outages on typo3.org infrastructure

Due to an unplanned power failure at our network carrier, the data center where some typo3.org subdomains are hosted have been completely offline from June 24 04:37:15 UTC+2 to June 24 19:28:48 UTC+2 Affected services have been: The official...

Information disclosure in w4x_backup

It has been discovered that the extension w4x_backup has several security related issues, which may disclosure confidential information.

Installer 2.0 survey

The Installer 2.0 project has now reached a point where we wan't to get the final input from the community before we start the implementation.