<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">
    <channel>
        <title>Official TYPO3 news</title>
        <description>Posts by date: 2009 / 12</description>
        <language>en</language>
        <link>https://news.typo3.com/article/archive/2009/december/blog.archive.xml</link>
        <lastBuildDate>Tue, 28 Jul 2026 15:16:44 +0200</lastBuildDate>
        
    
    
        
<item><title>Steering Committee Strategical Meeting</title><link>https://news.typo3.com/article/steering-committee-strategical-meeting</link><comments>https://news.typo3.com/article/steering-committee-strategical-meeting#comments</comments><pubDate>Thu, 17 Dec 2009 14:08:00 +0100</pubDate><dc:creator>ben van &#039;t ende</dc:creator><guid>https://news.typo3.com/article/steering-committee-strategical-meeting</guid><description>The Steering Committee met in Hamburg on the 4th of December at Bitfarmers for a Strategical Meeting. Oliver Hader (new core team leader) and Benni Mack (new release manager) have been invited to the meeting to participate. The structure of the Steering Committee and the TYPO3 Association as such have been discussed earlier in Karlsruhe.</description></item>


    
        
<item><title>TYPO3-SA-2009-020: Multiple vulnerabilities in third party extensions</title><link>https://news.typo3.com/security/advisory/typo3-sa-2009-020</link><comments>https://news.typo3.com/security/advisory/typo3-sa-2009-020#comments</comments><pubDate>Tue, 15 Dec 2009 10:00:00 +0100</pubDate><dc:creator>Georg Ringer</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-sa-2009-020</guid><description>Several vulnerabilities have been found in the following third party TYPO3 extensions: Car (car), TYPO3 Watchdog (aba_watchdog), File list (dr_blob), ListMan (nl_listman), XDS Staff List (xds_staff), Document Directorys (danp_documentdirs), Random Prayer Version 2 (ste_prayer2), Diocese of Portsmouth Resources Database (pd_resources), Parish of the Holy Spirit Religious Art Gallery (hs_religiousartgallery), Parish Administration Database (ste_parish_admin), Diocese of Portsmouth Calendar (pd_calendar), Flash SlideShow (slideshow), Subscription (mf_subscription), No indexed Search (no_indexed_search), Job Exchange (jobexchange), Training Company Database (trainincdb), ZID Linkliste (zid_linklist), vShoutbox  (vshoutbox), Frontend news submitter with RTE (fe_rtenews)</description></item>


    
        
<item><title>SECURITY-ISSUES-IN-SEVERAL-THIRD-PARTY-TYPO3-EXTENSIONS-INCLUDING-CAR-ABA-WATCHDOG-DR-BLOB-NL-LISTMAN-XDS-STAFF-DANP-DOCUMENTDIRS-STE-PRAYER2-PD-RESOURCES-HS-RELIGIOUSARTGALLERY-STE-PARISH-ADMIN-PD-CALENDAR: Security issues in several third party TYPO3 extensions including car, aba_watchdog, dr_blob, nl_listman, xds_staff, danp_documentdirs, ste_prayer2, pd_resources, hs_religiousartgallery, ste_parish_admin, pd_calendar</title><link>https://news.typo3.com/security/advisory/security-issues-in-several-third-party-typo3-extensions-including-car-aba-watchdog-dr-blob-nl-listman-xds-staff-danp-documentdirs-ste-prayer2-pd-resources-hs-religiousartgallery-ste-parish-admin-pd-calendar</link><comments>https://news.typo3.com/security/advisory/security-issues-in-several-third-party-typo3-extensions-including-car-aba-watchdog-dr-blob-nl-listman-xds-staff-danp-documentdirs-ste-prayer2-pd-resources-hs-religiousartgallery-ste-parish-admin-pd-calendar#comments</comments><pubDate>Tue, 15 Dec 2009 09:25:00 +0100</pubDate><dc:creator>Helmut Hummel</dc:creator><guid>https://news.typo3.com/security/advisory/security-issues-in-several-third-party-typo3-extensions-including-car-aba-watchdog-dr-blob-nl-listman-xds-staff-danp-documentdirs-ste-prayer2-pd-resources-hs-religiousartgallery-ste-parish-admin-pd-calendar</guid><description>Security vulnerabilities have been discovered in following third party TYPO3 extensions: Car (car), TYPO3 Watchdog (aba_watchdog), File list (dr_blob), ListMan (nl_listman), XDS Staff List (xds_staff), Document Directorys (danp_documentdirs), Random Prayer Version 2 (ste_prayer2), Diocese of Portsmouth Resources Database (pd_resources), Parish of the Holy Spirit Religious Art Gallery (hs_religiousartgallery), Parish Administration Database (ste_parish_admin), Diocese of Portsmouth Calendar (pd_calendar), Flash SlideShow (slideshow), Subscription (mf_subscription), No indexed Search (no_indexed_search), Job Exchange (jobexchange), Training Company Database (trainincdb), ZID Linkliste (zid_linklist), vShoutbox  (vshoutbox), Frontend news submitter with RTE (fe_rtenews)</description></item>


    
        
<item><title>Series of English Video Tutorials for Editors Completed</title><link>https://news.typo3.com/article/series-of-english-video-tutorials-for-editors-completed</link><comments>https://news.typo3.com/article/series-of-english-video-tutorials-for-editors-completed#comments</comments><pubDate>Thu, 10 Dec 2009 11:57:00 +0100</pubDate><dc:creator>News team</dc:creator><guid>https://news.typo3.com/article/series-of-english-video-tutorials-for-editors-completed</guid><description>The videos section now offers the complete video series featuring the current TYPO3 version in English as well.</description></item>


    
        
<item><title>TYPO3 snippets online (again)!</title><link>https://news.typo3.com/article/typo3-snippets-online-again</link><comments>https://news.typo3.com/article/typo3-snippets-online-again#comments</comments><pubDate>Thu, 10 Dec 2009 10:48:00 +0100</pubDate><dc:creator>ben van &#039;t ende</dc:creator><guid>https://news.typo3.com/article/typo3-snippets-online-again</guid><description>Add your snippets! Get your snippets!</description></item>


    
        
<item><title>SECURITY-ISSUES-IN-SEVERAL-THIRD-PARTY-TYPO3-EXTENSIONS-INCLUDING-CAL-DIRECT-MAIL-AN-SEARCHIT-KK-DOWNLOADER-LT-BASETAG-MCHTRIPS-SIMPLE-GLOSSAR-TW-PRODUCTFINDER-WFQBE: Security issues in several third party TYPO3 extensions including cal, direct_mail, an_searchit, kk_downloader, lt_basetag, mchtrips, simple_glossar, tw_productfinder, wfqbe</title><link>https://news.typo3.com/security/advisory/security-issues-in-several-third-party-typo3-extensions-including-cal-direct-mail-an-searchit-kk-downloader-lt-basetag-mchtrips-simple-glossar-tw-productfinder-wfqbe</link><comments>https://news.typo3.com/security/advisory/security-issues-in-several-third-party-typo3-extensions-including-cal-direct-mail-an-searchit-kk-downloader-lt-basetag-mchtrips-simple-glossar-tw-productfinder-wfqbe#comments</comments><pubDate>Tue, 01 Dec 2009 16:00:00 +0100</pubDate><dc:creator>Helmut Hummel</dc:creator><guid>https://news.typo3.com/security/advisory/security-issues-in-several-third-party-typo3-extensions-including-cal-direct-mail-an-searchit-kk-downloader-lt-basetag-mchtrips-simple-glossar-tw-productfinder-wfqbe</guid><description>Security vulnerabilities have been discovered in following third party TYPO3 extensions: &quot;Calendar Base&quot; (cal), &quot;Direct Mail&quot; (direct_mail), &quot;[AN] Search it!&quot; (an_searchit), &quot;Simple download-system with counter and categories&quot; (kk_downloader), &quot;Automatic Base Tags for RealUrl&quot; (lt_basetag), &quot;Trips&quot; (mchtrips), &quot;simple Glossar&quot; (simple_glossar), &quot;TW Productfinder&quot; (tw_productfinder), &quot;DB Integration&quot; (wfqbe)</description></item>


    
        
<item><title>TYPO3-SA-2009-019: Blind SQL Injection vulnerability in extension Calendar Base (cal)</title><link>https://news.typo3.com/security/advisory/typo3-sa-2009-019</link><comments>https://news.typo3.com/security/advisory/typo3-sa-2009-019#comments</comments><pubDate>Tue, 01 Dec 2009 10:00:00 +0100</pubDate><dc:creator>Marcus Krause</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-sa-2009-019</guid><description>It has been discovered that the extension Calendar Base (cal) is vulnerable to Blind SQL Injection.</description></item>


    
        
<item><title>TYPO3-SA-2009-018: Cross-Site Scripting vulnerability in extension Direct Mail (direct_mail)</title><link>https://news.typo3.com/security/advisory/typo3-sa-2009-018</link><comments>https://news.typo3.com/security/advisory/typo3-sa-2009-018#comments</comments><pubDate>Tue, 01 Dec 2009 10:00:00 +0100</pubDate><dc:creator>Marcus Krause</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-sa-2009-018</guid><description>It has been discovered that the extension Direct Mail (direct_mail) is vulnerable to XSS.</description></item>


    
        
<item><title>TYPO3-SA-2009-017: Multiple vulnerabilities in third party extensions</title><link>https://news.typo3.com/security/advisory/typo3-sa-2009-017</link><comments>https://news.typo3.com/security/advisory/typo3-sa-2009-017#comments</comments><pubDate>Tue, 01 Dec 2009 10:00:00 +0100</pubDate><dc:creator>Marcus Krause</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-sa-2009-017</guid><description>Several vulnerabilities have been found in the following third party TYPO3 extensions: [AN] Search it! (an_searchit), Simple download-system with counter and categories (kk_downloader), Automatic Base Tags for RealUrl (lt_basetag), Trips (mchtrips), simple Glossar (simple_glossar), TW Productfinder (tw_productfinder), DB Integration (wfqbe)</description></item>


    



    </channel>
</rss>
