TYPO3 News & Events Hub
What’s New & What’s Coming
Extbase Grows Up
Thanks to the innovative work of the FLOW3/Phoenix team much has happened since the presentation of the first version of Extbase at the 2009 TYPO3 Snowboard Tour.
Read moreT3BOARD12 registration starts in 5 minutes
Get a place on the T3BOARD12 in Laax! Registration starts in 5 minutes on association.typo3.org
Security issue in third party extension "T3Blog" (t3blog)
A Cross-Site Scripting vulnerabilitiy has been discovered in the third party TYPO3 extension "T3Blog" (t3blog) For further information on the issue in extension "T3Blog" (t3blog), please read the related advisory TYPO3-EXT-SA-2011-013 that was...
Security issues in third-party TYPO3 extensions
Security vulnerabilities have been discovered in third-party TYPO3 extensions: mm_hutinfo, np_indexed_search_stat, rzcolorbox, t3c_podcasts, winning_game, tgm_gallery, tgmv_gallery, bps_shib, dev_null_robots, dhc_inflationcal, dam_frontend,...
Several vulnerabilities in third party extensions
Several vulnerabilities have been found in the following third-party TYPO3 extensions: mm_hutinfo, np_indexed_search_stat, rzcolorbox, t3c_podcasts, winning_game, tgm_gallery, tgmv_gallery, bps_shib, dev_null_robots, dhc_inflationcal, dam_frontend,...
Cross-Site scripting vulnerability in extension t3blog (t3blog)
It has been discovered that the extension "T3Blog" (t3blog) is vulnerable to Cross-Site Scripting.
T3BOARD12 subscription starts 30st of September!
T3BOARD12 registration starts on the 30st of September 2011!!
TYPO3 4.6beta3 released
Today the TYPO3 community released the third and last beta version of TYPO3 4.6, in sync with our roadmap.
Giving documentation a ReST
Several months ago we announced the migration of the official documentation to DocBook. We are now turning to reStructuredText. Read on to understand why.
Daniel Bruessler is dead
Long-time Documentation Team leader Daniel Brüßler died in a car accident back in June.
Security issues in third party extension "phpMyAdmin" (phpmyadmin)
Multiple Cross-Site Scripting vulnerabilities have been discovered in the third party TYPO3 extension "phpMyAdmin" (phpmyadmin) For further information on the issue in extension "phpMyAdmin" (phpmyadmin), please read the related advisory...
Multiple XSS vulnerabilities in extension phpMyAdmin (phpmyadmin)
It has been discovered that the extension phpMyAdmin (phpmyadmin) is vulnerable to Cross-Site Scripting.
TYPO3 4.3.14, 4.4.11 and 4.5.6 released
The TYPO3 Core Team announces versions 4.3.14, 4.4.11 and 4.5.6 of the TYPO3 Enterprise Content Management System.
Multiple security issues found in TYPO3 core
It has been discovered that improper error handling could lead to cache flooding in TYPO3 Core and that the prepared statement database API potentially allows SQL Injections. Please read the advisories for a description and solutions of all the...
Improper error handling could lead to cache flooding in TYPO3 Core
It has been discovered that TYPO3 is susceptible to Cache Flooding
Potential SQL injection vulnerability in TYPO3 Core
It has been discovered that the TYPO3 prepared statement database API allows SQL Injections.
FLOW3 1.0.0 beta 2 Released
The FLOW3 core team is delighted to announce the release of FLOW3 1.0.0 beta 2. Thanks to the feedback of FLOW3 users we could identify and fix several bugs an
Successful fourth TYPO3camp in Hamburg
From 5th-7th August more than 120 participants came from all over Germany and neighbouring countries to the TYPO3camp in Hamburg - it was the fourth camp of its kind in the Ha
TYPO3 Conference: Early Bird Phase Extended Until 15th September
The TYPO3 conference team was lucky to get some
Security issues in third-party TYPO3 extensions
Security vulnerabilities have been discovered in third-party TYPO3 extensions: direct_mail_subscription, rgsmoothgallery, th_mailformplus, ameos_dragndropupload For further information on the issues in direct_mail_subscription, please read the r