Skip to main navigation Skip to main content Skip to page footer

TYPO3 News & Events Hub

What’s New & What’s Coming

TYPO3 Security Bulletin

It has been discovered that the extension phpMyAdmin (phpmyadmin) is vulnerable to Cross-Site Scripting.

FLOW3 1.0.0 alpha 11 released

The FLOW3 core team is delighted to announce the release of the eleventh alpha release of FLOW3.

Next Bug Day: August 27

The next bug crushing episode will take place on August 27, 2010. Join us!

TYPO3 Security Bulletin

It has been discovered that the extension mm_forum (mm_forum) is vulnerable to Information Disclosure.

Multiple vulnerabilities in third-party extensions

Several vulnerabilities have been found in the following third party TYPO3 extensions: Event (event), Fe user statistic (festat), JW Calendar (jw_calendar), Questionnaire (ke_questionnaire), Branchenbuch [Yellow Pages] (mh_branchenbuch), Webkit PDFs...

Security issues in third-party TYPO3 extensions

Security vulnerabilities have been discovered in third-party TYPO3 extensions event, festat, jw_calendar, ke_questionnaire, mh_branchenbuch, webkitpdf, vx_xajax_shoutbox

Friday Bugday

On Friday, 30th of July, we have our next bugday, join us!

TYPO3 at OSCON

Last week the TYPO3 community of Portland and San Francisco organized to attend OSCON, the world's leading Open Source convention in Portland, Oregon with their own TYPO3 booth.

TYPO3 Security Bulletin

It has been discovered that the extension phpMyAdmin (phpmyadmin) is vulnerable to Broken Access Control.

Multiple security issues found in TYPO3 core

It has been discovered that TYPO3 Core is vulnerable to Cross-Site Scripting (XSS), Open Redirection, SQL Injection, Broken Authentication and Session Management, Insecure Randomness, Information Disclosure and Arbitrary Code Execution.

Multiple vulnerabilities in TYPO3 Core

It has been discovered that TYPO3 Core is vulnerable to Cross-Site Scripting (XSS), Open Redirection, SQL Injection, Broken Authentication and Session Management, Insecure Randomness, Information Disclosure, Arbitrary Code Execution