This Week in TYPO3 (Week 39, 2013)
This week saw postponement of the Alpha 3 of TYPO3 CMS, GSoC pencils down, TYPO3 distributions, Neos news, TYPO3 girls and CMS garden goodness. As a bonus a small interview with DE-CIX’s Alexander Summa.
Read moreCouch sessions or The secret of our community
For more than 10 years people keep telling me how wonderful and unique the TYPO3 community is, how enthusiastic. Do you know why? I do.
Will TYPO3 Neos be competitive from day one?
On the TYPO3 Neos team, we often get the question – when will Neos be capable of doing the same as TYPO3 CMS? In other words: Will Neos be competitive from day one? This article aims to answer the question but it also targets another, potentially far more important question to the TYPO3 community surrounding the Neos project.
TYPO3-EXT-SA-2013-018: Several vulnerabilities in extension AWStats (cc_awstats)
It has been discovered that the extension "AWStats" (cc_awstats) contains an unspecific vulnerability in the bundled AWStats version.
TYPO3-EXT-SA-2013-017: Several vulnerabilities in third party extensions
Several vulnerabilities have been found in the following third-party TYPO3 extensions: booking, cronmm_ratsinfo, ics_awstats, iflowgallery, ke_userregister, meta_beawstatsind, powermail_optin, smarty, youtubevideos
TYPO3-EXT-SA-2013-016: SQL Injection vulnerability in extension Formhandler (formhandler)
It has been discovered that the extension "Formhandler" (formhandler) is vulnerable to SQL-Injection.
TYPO3-EXT-SA-2013-015: SQL Injection vulnerability in extension RealURL: speaking paths for TYPO3 (realurl)
It has been discovered that the extension "RealURL: speaking paths for TYPO3" (realurl) is vulnerable to SQL-Injection.
TYPO3-EXT-SA-2013-014: Information Disclosure in extension Direct Mail (direct_mail)
It has been discovered that the extension "Direct Mail" (direct mail) is susceptible to Information Disclosure
TYPO3-EXT-SA-2013-009: Several vulnerabilities in extension Apache Solr for TYPO3 (solr)
It has been discovered that the extension "Apache Solr for TYPO3" (solr) is vulnerable to Cross-Site Scripting and Insecure Unserialize.
This Week in TYPO3 (Week 38, 2013)
‘This Week in TYPO3’ was born out of the suggestions by community members for shorter and more timely updates. The monthly overviews were usually too much after the fact and it’s length not appealing to read. Of course we also live in times where we do not focus that long. I also sincerely hope that these timely updates will see contributions by the community and feedback by the community. Participation in getting this weekly update done is encouraged.