<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">
    <channel>
        <title>Official TYPO3 news</title>
        <description>Posts by date: 2008 / 5</description>
        <language>en</language>
        <link>https://news.typo3.com/article/archive/2008/may/blog.archive.xml</link>
        <lastBuildDate>Tue, 28 Jul 2026 14:14:04 +0200</lastBuildDate>
        
    
    
        
<item><title>Getting started with the Forge </title><link>https://news.typo3.com/article/getting-started-with-the-forge</link><comments>https://news.typo3.com/article/getting-started-with-the-forge#comments</comments><pubDate>Fri, 30 May 2008 19:14:00 +0200</pubDate><dc:creator>Robert Lemke</dc:creator><guid>https://news.typo3.com/article/getting-started-with-the-forge</guid><description></description></item>


    
        
<item><title>TYPO3-20080527-2: SQL Injection in extension &quot;Library for Frontend plugins&quot; (sg_zfelib)</title><link>https://news.typo3.com/security/advisory/typo3-20080527-2</link><comments>https://news.typo3.com/security/advisory/typo3-20080527-2#comments</comments><pubDate>Tue, 27 May 2008 10:00:00 +0200</pubDate><dc:creator>Zoe Legacy</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-20080527-2</guid><description>It has been discovered that the extension &quot;Library for Frontend plugins&quot; (sg_zfelib) is susceptible to SQL Injections.</description></item>


    
        
<item><title>SECURITY-BULLETIN-TYPO3-20080527-2-SQL-INJECTION-IN-EXTENSION-LIBRARY-FOR-FRONTEND-PLUGINS-SG-ZFELIB: Security Bulletin TYPO3-20080527-2: SQL Injection in extension &quot;Library for Frontend plugins&quot; (sg_zfelib)</title><link>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080527-2-sql-injection-in-extension-library-for-frontend-plugins-sg-zfelib</link><comments>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080527-2-sql-injection-in-extension-library-for-frontend-plugins-sg-zfelib#comments</comments><pubDate>Tue, 27 May 2008 08:15:00 +0200</pubDate><dc:creator>Henning Pingel</dc:creator><guid>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080527-2-sql-injection-in-extension-library-for-frontend-plugins-sg-zfelib</guid><description>It has been discovered that the extension &quot;Library for Frontend plugins&quot; (sg_zfelib) is susceptible to SQL Injections.</description></item>


    
        
<item><title>SECURITY-BULLETIN-TYPO3-20080527-1-CROSS-SITE-SCRIPTING-VULNERABILITY-IN-EXTENSION-KJ-IMAGE-LIGHTBOX-V2-KJ-IMAGELIGHTBOX2: Security Bulletin TYPO3-20080527-1: Cross Site Scripting vulnerability in extension &quot;KJ: Image Lightbox v2&quot; (kj_imagelightbox2)</title><link>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080527-1-cross-site-scripting-vulnerability-in-extension-kj-image-lightbox-v2-kj-imagelightbox2</link><comments>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080527-1-cross-site-scripting-vulnerability-in-extension-kj-image-lightbox-v2-kj-imagelightbox2#comments</comments><pubDate>Tue, 27 May 2008 07:21:00 +0200</pubDate><dc:creator>Henning Pingel</dc:creator><guid>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080527-1-cross-site-scripting-vulnerability-in-extension-kj-image-lightbox-v2-kj-imagelightbox2</guid><description>It has been discovered that the extension &quot;KJ: Image Lightbox v2&quot; (kj_imagelightbox2) is susceptible to Cross Site Scripting (XSS) attacks.</description></item>


    
        
<item><title>TYPO3-20080527-1: Cross Site Scripting vulnerability in extension &quot;KJ: Image Lightbox v2&quot; (kj_imagelightbox2)</title><link>https://news.typo3.com/security/advisory/typo3-20080527-1</link><comments>https://news.typo3.com/security/advisory/typo3-20080527-1#comments</comments><pubDate>Tue, 27 May 2008 00:00:00 +0200</pubDate><dc:creator>Zoe Legacy</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-20080527-1</guid><description>It has been discovered that the extension &quot;KJ: Image Lightbox v2&quot; (kj_imagelightbox2) is susceptible to Cross Site Scripting (XSS) attacks.</description></item>


    
        
<item><title>TYPO3-20080515-1: Multiple vulnerabilities in extension Frontend User Registration (sr_feuser_register)</title><link>https://news.typo3.com/security/advisory/typo3-20080515-1</link><comments>https://news.typo3.com/security/advisory/typo3-20080515-1#comments</comments><pubDate>Thu, 15 May 2008 10:00:00 +0200</pubDate><dc:creator>Zoe Legacy</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-20080515-1</guid><description>It has been discovered that the extension Frontend User Registration (sr_feuser_register) is susceptible to Cross Site Scripting (XSS) attacks and allows Remote Command Execution.</description></item>


    
        
<item><title>TYPO3-20080515-2: Multiple vulnerabilities in extension Frontend Filemanager (air_filemanager)</title><link>https://news.typo3.com/security/advisory/typo3-20080515-2</link><comments>https://news.typo3.com/security/advisory/typo3-20080515-2#comments</comments><pubDate>Thu, 15 May 2008 10:00:00 +0200</pubDate><dc:creator>Zoe Legacy</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-20080515-2</guid><description>It has been discovered that the extension Frontend Filemanager (air_filemanager) is susceptible to Cross Site Scripting (XSS) attacks and allows Remote Code Execution.
</description></item>


    
        
<item><title>SECURITY-BULLETIN-TYPO3-20080515-2-MULTIPLE-VULNERABILITIES-IN-EXTENSION-FRONTEND-FILEMANAGER-AIR-FILEMANAGER: Security Bulletin TYPO3-20080515-2: Multiple vulnerabilities in extension Frontend Filemanager (air_filemanager)</title><link>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080515-2-multiple-vulnerabilities-in-extension-frontend-filemanager-air-filemanager</link><comments>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080515-2-multiple-vulnerabilities-in-extension-frontend-filemanager-air-filemanager#comments</comments><pubDate>Thu, 15 May 2008 07:18:00 +0200</pubDate><dc:creator>Henning Pingel</dc:creator><guid>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080515-2-multiple-vulnerabilities-in-extension-frontend-filemanager-air-filemanager</guid><description>It has been discovered that the extension Frontend Filemanager (air_filemanager) is susceptible to Cross Site Scripting (XSS) attacks and allows Remote Code Execution.
</description></item>


    
        
<item><title>SECURITY-BULLETIN-TYPO3-20080515-1-MULTIPLE-VULNERABILITIES-IN-EXTENSION-FRONTEND-USER-REGISTRATION-SR-FEUSER-REGISTER: Security Bulletin TYPO3-20080515-1: Multiple vulnerabilities in extension Frontend User Registration (sr_feuser_register)</title><link>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080515-1-multiple-vulnerabilities-in-extension-frontend-user-registration-sr-feuser-register</link><comments>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080515-1-multiple-vulnerabilities-in-extension-frontend-user-registration-sr-feuser-register#comments</comments><pubDate>Thu, 15 May 2008 07:16:00 +0200</pubDate><dc:creator>Henning Pingel</dc:creator><guid>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080515-1-multiple-vulnerabilities-in-extension-frontend-user-registration-sr-feuser-register</guid><description>It has been discovered that the extension Frontend User Registration (sr_feuser_register) is susceptible to Cross Site Scripting (XSS) attacks and allows Remote Command Execution.</description></item>


    
        
<item><title>TYPO3-20080513-4: Multiple vulnerabilities in extension Statistics (ke_stats)</title><link>https://news.typo3.com/security/advisory/typo3-20080513-4</link><comments>https://news.typo3.com/security/advisory/typo3-20080513-4#comments</comments><pubDate>Tue, 13 May 2008 10:00:00 +0200</pubDate><dc:creator>Zoe Legacy</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-20080513-4</guid><description>It has been discovered that the extension Statistics (ke_stats) is vulnerable to Blind SQL Injection attacks. Also, a Cross Site Scripting issue has been found.
</description></item>


    
        
<item><title>TYPO3-20080513-3: Cross Site Scripting vulnerability in extension Event Database (rlmp_eventdb)</title><link>https://news.typo3.com/security/advisory/typo3-20080513-3</link><comments>https://news.typo3.com/security/advisory/typo3-20080513-3#comments</comments><pubDate>Tue, 13 May 2008 10:00:00 +0200</pubDate><dc:creator>Zoe Legacy</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-20080513-3</guid><description>It has been discovered that the extension Event Database (rlmp_eventdb) is susceptible to Cross Site Scripting (XSS) attacks.</description></item>


    
        
<item><title>TYPO3-20080513-2: Cross Site Scripting vulnerability in extension Questionaire (pbsurvey)</title><link>https://news.typo3.com/security/advisory/typo3-20080513-2</link><comments>https://news.typo3.com/security/advisory/typo3-20080513-2#comments</comments><pubDate>Tue, 13 May 2008 10:00:00 +0200</pubDate><dc:creator>Zoe Legacy</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-20080513-2</guid><description>It has been discovered that the extension Questionaire (pbsurvey) is susceptible to Cross Site Scripting (XSS) attacks.
</description></item>


    
        
<item><title>TYPO3-20080513-1: Multiple vulnerabilities in extension WT Gallery (wt_gallery)</title><link>https://news.typo3.com/security/advisory/typo3-20080513-1</link><comments>https://news.typo3.com/security/advisory/typo3-20080513-1#comments</comments><pubDate>Tue, 13 May 2008 10:00:00 +0200</pubDate><dc:creator>Zoe Legacy</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-20080513-1</guid><description>It has been discovered that the extension wt_gallery is susceptible to Path Traversal and Cross Site Scripting (XSS) attacks. Besides that, it may disclose sensitive information.</description></item>


    
        
<item><title>SECURITY-BULLETIN-TYPO3-20080513-4-MULTIPLE-VULNERABILITIES-IN-EXTENSION-STATISTICS-KE-STATS: Security Bulletin TYPO3-20080513-4: Multiple vulnerabilities in extension Statistics (ke_stats)</title><link>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080513-4-multiple-vulnerabilities-in-extension-statistics-ke-stats</link><comments>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080513-4-multiple-vulnerabilities-in-extension-statistics-ke-stats#comments</comments><pubDate>Tue, 13 May 2008 09:24:00 +0200</pubDate><dc:creator>Henning Pingel</dc:creator><guid>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080513-4-multiple-vulnerabilities-in-extension-statistics-ke-stats</guid><description>It has been discovered that the extension Statistics (ke_stats) is vulnerable to Blind SQL Injection attacks. Also, a Cross Site Scripting issue has been found.</description></item>


    
        
<item><title>SECURITY-BULLETIN-TYPO3-20080513-3-CROSS-SITE-SCRIPTING-VULNERABILITY-IN-EXTENSION-EVENT-DATABASE-RLMP-EVENTDB: Security Bulletin TYPO3-20080513-3: Cross Site Scripting vulnerability in extension Event Database (rlmp_eventdb)</title><link>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080513-3-cross-site-scripting-vulnerability-in-extension-event-database-rlmp-eventdb</link><comments>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080513-3-cross-site-scripting-vulnerability-in-extension-event-database-rlmp-eventdb#comments</comments><pubDate>Tue, 13 May 2008 08:37:00 +0200</pubDate><dc:creator>Henning Pingel</dc:creator><guid>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080513-3-cross-site-scripting-vulnerability-in-extension-event-database-rlmp-eventdb</guid><description>It has been discovered that the extension Event Database (rlmp_eventdb) is susceptible to Cross Site Scripting (XSS) attacks.</description></item>


    
        
<item><title>SECURITY-BULLETIN-TYPO3-20080513-2-CROSS-SITE-SCRIPTING-VULNERABILITY-IN-EXTENSION-QUESTIONAIRE-PBSURVEY: Security Bulletin TYPO3-20080513-2: Cross Site Scripting vulnerability in extension Questionaire (pbsurvey)</title><link>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080513-2-cross-site-scripting-vulnerability-in-extension-questionaire-pbsurvey</link><comments>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080513-2-cross-site-scripting-vulnerability-in-extension-questionaire-pbsurvey#comments</comments><pubDate>Tue, 13 May 2008 08:31:00 +0200</pubDate><dc:creator>Henning Pingel</dc:creator><guid>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080513-2-cross-site-scripting-vulnerability-in-extension-questionaire-pbsurvey</guid><description>It has been discovered that the extension Questionaire (pbsurvey) is susceptible to Cross Site Scripting (XSS) attacks.</description></item>


    
        
<item><title>SECURITY-BULLETIN-TYPO3-20080513-1-MULTIPLE-VULNERABILITIES-IN-EXTENSION-WT-GALLERY-WT-GALLERY: Security Bulletin TYPO3-20080513-1: Multiple vulnerabilities in extension WT Gallery (wt_gallery)</title><link>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080513-1-multiple-vulnerabilities-in-extension-wt-gallery-wt-gallery</link><comments>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080513-1-multiple-vulnerabilities-in-extension-wt-gallery-wt-gallery#comments</comments><pubDate>Tue, 13 May 2008 08:25:00 +0200</pubDate><dc:creator>Henning Pingel</dc:creator><guid>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080513-1-multiple-vulnerabilities-in-extension-wt-gallery-wt-gallery</guid><description>It has been discovered that the extension WT Gallery (wt_gallery) is susceptible to Path Traversal and Cross Site Scripting (XSS) attacks. Besides that, it may disclose sensitive information.</description></item>


    
        
<item><title>TYPO3 v5 project report: April 2008</title><link>https://news.typo3.com/article/typo3-v5-project-report-april-2008</link><comments>https://news.typo3.com/article/typo3-v5-project-report-april-2008#comments</comments><pubDate>Mon, 05 May 2008 12:22:00 +0200</pubDate><dc:creator>Robert Lemke</dc:creator><guid>https://news.typo3.com/article/typo3-v5-project-report-april-2008</guid><description>For all of you who are not that deeply involved in the making of TYPO3 v5, I have collected the most important bits of last month&#039;s activities.</description></item>


    
        
<item><title>TYPO3-20080505-2: Cross Site Scripting vulnerability in extension powermail</title><link>https://news.typo3.com/security/advisory/typo3-20080505-2</link><comments>https://news.typo3.com/security/advisory/typo3-20080505-2#comments</comments><pubDate>Mon, 05 May 2008 10:00:00 +0200</pubDate><dc:creator>Zoe Legacy</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-20080505-2</guid><description>It has been discovered that the extension powermail is susceptible to Cross Site Scripting (XSS) attacks.</description></item>


    
        
<item><title>TYPO3-20080505-1: Multiple vulnerabilities in extension MailformPlus (th_mailformplus)</title><link>https://news.typo3.com/security/advisory/typo3-20080505-1</link><comments>https://news.typo3.com/security/advisory/typo3-20080505-1#comments</comments><pubDate>Mon, 05 May 2008 10:00:00 +0200</pubDate><dc:creator>Zoe Legacy</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-20080505-1</guid><description>It has been discovered that the extension MailformPlus (th_mailformplus) is susceptible to Cross Site Scripting (XSS) attacks and allows Remote Code Execution.</description></item>


    
        
<item><title>SECURITY-BULLETIN-TYPO3-20080505-2-CROSS-SITE-SCRIPTING-VULNERABILITY-IN-EXTENSION-POWERMAIL: Security Bulletin TYPO3-20080505-2: Cross Site Scripting vulnerability in extension powermail</title><link>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080505-2-cross-site-scripting-vulnerability-in-extension-powermail</link><comments>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080505-2-cross-site-scripting-vulnerability-in-extension-powermail#comments</comments><pubDate>Mon, 05 May 2008 07:18:00 +0200</pubDate><dc:creator>Henning Pingel</dc:creator><guid>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080505-2-cross-site-scripting-vulnerability-in-extension-powermail</guid><description>It has been discovered that the extension powermail is susceptible to Cross Site Scripting (XSS) attacks.</description></item>


    
        
<item><title>SECURITY-BULLETIN-TYPO3-20080505-1-MULTIPLE-VULNERABILITIES-IN-EXTENSION-MAILFORMPLUS-TH-MAILFORMPLUS: Security Bulletin TYPO3-20080505-1: Multiple vulnerabilities in extension MailformPlus (th_mailformplus)</title><link>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080505-1-multiple-vulnerabilities-in-extension-mailformplus-th-mailformplus</link><comments>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080505-1-multiple-vulnerabilities-in-extension-mailformplus-th-mailformplus#comments</comments><pubDate>Mon, 05 May 2008 07:14:00 +0200</pubDate><dc:creator>Henning Pingel</dc:creator><guid>https://news.typo3.com/security/advisory/security-bulletin-typo3-20080505-1-multiple-vulnerabilities-in-extension-mailformplus-th-mailformplus</guid><description>It has been discovered that the extension MailformPlus (th_mailformplus) is susceptible to Cross Site Scripting (XSS) attacks and allows Remote Code Execution.</description></item>


    



    </channel>
</rss>
