<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">
    <channel>
        <title>Official TYPO3 news</title>
        <description>Posts by date: 2016 / 5</description>
        <language>en</language>
        <link>https://news.typo3.com/article/archive/2016/may/blog.archive.xml</link>
        <lastBuildDate>Tue, 28 Jul 2026 14:18:45 +0200</lastBuildDate>
        
    
    
        
<item><title>TYPO3-EXT-SA-2016-017: Information Disclosure in &quot;MMC directmail subscription&quot; (mmc_directmail_subscription)</title><link>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-017</link><comments>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-017#comments</comments><pubDate>Tue, 31 May 2016 12:04:00 +0200</pubDate><dc:creator>Marcus Krause</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-017</guid><description>It has been discovered that the extension &quot;MMC directmail subscription&quot; (mmc_directmail_subscription) is susceptible to Information Disclosure.</description></item>


    
        
<item><title>TYPO3-EXT-SA-2016-016: Multiple vulnerabilities in extension &quot;http:BL Blocking&quot; (mh_httpbl)</title><link>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-016</link><comments>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-016#comments</comments><pubDate>Tue, 31 May 2016 12:03:00 +0200</pubDate><dc:creator>News team</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-016</guid><description>It has been discovered that the extension &quot;http:BL Blocking&quot; (mh_httpbl) is susceptible to SQL Injection and Cross-Site Scripting.</description></item>


    
        
<item><title>TYPO3-EXT-SA-2016-015: Non-Persistent Cross-Site Scripting in extension &quot;Static Methods since 2007&quot; (div2007)</title><link>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-015</link><comments>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-015#comments</comments><pubDate>Tue, 31 May 2016 12:02:00 +0200</pubDate><dc:creator>Marcus Krause</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-015</guid><description>It has been discovered that the extension &quot;Static Methods since 2007&quot; (div2007) is susceptible to Cross-Site Scripting.</description></item>


    
        
<item><title>TYPO3-EXT-SA-2016-014: Information Disclosure in extension &quot;Questionnaire&quot; (ke_questionnaire)</title><link>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-014</link><comments>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-014#comments</comments><pubDate>Tue, 31 May 2016 12:01:00 +0200</pubDate><dc:creator>Marcus Krause</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-014</guid><description>It has been discovered that the extension &quot;Questionnaire&quot; (ke_questionnaire) is susceptible to Information Disclosure.</description></item>


    
        
<item><title>TYPO3-EXT-SA-2016-013: SQL Injection in extension &quot;Browser - TYPO3 without PHP&quot; (browser)</title><link>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-013</link><comments>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-013#comments</comments><pubDate>Tue, 31 May 2016 12:00:00 +0200</pubDate><dc:creator>Marcus Krause</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-013</guid><description>It has been discovered that the extension &quot;Browser - TYPO3 without PHP&quot; (browser) is susceptible to SQL Injection.</description></item>


    
        
<item><title>This Week in TYPO3 (2016, Week 20)</title><link>https://news.typo3.com/article/this-week-in-typo3-2016-week-20</link><comments>https://news.typo3.com/article/this-week-in-typo3-2016-week-20#comments</comments><pubDate>Fri, 27 May 2016 12:22:00 +0200</pubDate><dc:creator>ben van &#039;t ende</dc:creator><guid>https://news.typo3.com/article/this-week-in-typo3-2016-week-20</guid><description>In this episode special attention for this year’s T3Rookies initiative. There is a new Kid on the Block: Usergroup Greece, more bootup days, updated manuals and focus on accessibility.</description></item>


    
        
<item><title>TYPO3-EXT-SA-2016-012: Path Traversal in extension &quot;Media management&quot; (media)</title><link>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-012</link><comments>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-012#comments</comments><pubDate>Fri, 27 May 2016 12:01:00 +0200</pubDate><dc:creator>Marcus Krause</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-012</guid><description>It has been discovered that the extension &quot;Media management&quot; (media) is susceptible to Path Traversal.</description></item>


    
        
<item><title>TYPO3-EXT-SA-2016-011: Cross-Site Scripting in extension &quot;Formhandler&quot; (formhandler)</title><link>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-011</link><comments>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-011#comments</comments><pubDate>Fri, 27 May 2016 12:00:00 +0200</pubDate><dc:creator>Marcus Krause</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-011</guid><description>It has been discovered that the extension &quot;Formhandler&quot; (formhandler) is susceptible to Cross-Site Scripting.</description></item>


    
        
<item><title>TYPO3 CMS 6.2.25, 7.6.9 and 8.1.2 released</title><link>https://news.typo3.com/article/typo3-cms-6225-769-and-812-released</link><comments>https://news.typo3.com/article/typo3-cms-6225-769-and-812-released#comments</comments><pubDate>Tue, 24 May 2016 12:15:00 +0200</pubDate><dc:creator>Oliver Hader</dc:creator><guid>https://news.typo3.com/article/typo3-cms-6225-769-and-812-released</guid><description>The TYPO3 Community announces the versions 6.2.25 LTS, 7.6.9 LTS and 8.1.2 of the TYPO3 Enterprise Content Management System.</description></item>


    
        
<item><title>TYPO3-EXT-SA-2016-010: Missing Access Check in extension &quot;Frontend User Registration&quot; (sf_register)</title><link>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-010</link><comments>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-010#comments</comments><pubDate>Tue, 24 May 2016 12:00:00 +0200</pubDate><dc:creator>Marcus Krause</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-ext-sa-2016-010</guid><description>It has been discovered that the extension &quot;Frontend User Registration&quot; (sf_register) lacks a proper access check.</description></item>


    
        
<item><title>TYPO3-CORE-SA-2016-013: Missing Access Check in TYPO3 CMS</title><link>https://news.typo3.com/security/advisory/typo3-core-sa-2016-013</link><comments>https://news.typo3.com/security/advisory/typo3-core-sa-2016-013#comments</comments><pubDate>Tue, 24 May 2016 10:00:00 +0200</pubDate><dc:creator>Helmut Hummel</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-core-sa-2016-013</guid><description>It has been discovered, that TYPO3 CMS lacks an access check for Extbase actions.</description></item>


    
        
<item><title>TYPO3 CMS 6.2.24, 7.6.8 and 8.1.1 released</title><link>https://news.typo3.com/article/typo3-cms-6224-768-and-811-released</link><comments>https://news.typo3.com/article/typo3-cms-6224-768-and-811-released#comments</comments><pubDate>Tue, 24 May 2016 10:00:00 +0200</pubDate><dc:creator>Oliver Hader</dc:creator><guid>https://news.typo3.com/article/typo3-cms-6224-768-and-811-released</guid><description>The TYPO3 Community announces the versions 6.2.24 LTS, 7.6.8 LTS and 8.1.1 of the TYPO3 Enterprise Content Management System.</description></item>


    
        
<item><title>TYPO3-PSA-2016-002: Important Security-Bulletin Pre-Announcement</title><link>https://news.typo3.com/security/advisory/typo3-psa-2016-002</link><comments>https://news.typo3.com/security/advisory/typo3-psa-2016-002#comments</comments><pubDate>Fri, 20 May 2016 11:00:00 +0200</pubDate><dc:creator>Helmut Hummel</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-psa-2016-002</guid><description>TYPO3 releases containing a fix for a critical vulnerability will be published Tuesday 24th of May at about 10:00 a.m. CEST (08:00 a.m. GMT).</description></item>


    
        
<item><title>TYPO3 CMS 6.2.23 and 7.6.7 released</title><link>https://news.typo3.com/article/typo3-cms-6223-and-767-released</link><comments>https://news.typo3.com/article/typo3-cms-6223-and-767-released#comments</comments><pubDate>Tue, 17 May 2016 14:45:00 +0200</pubDate><dc:creator>Oliver Hader</dc:creator><guid>https://news.typo3.com/article/typo3-cms-6223-and-767-released</guid><description>The TYPO3 Community announces the versions 6.2.23 LTS and 7.6.7 LTS of the TYPO3 Enterprise Content Management System.</description></item>


    
        
<item><title>typo3.org code sprint Rosenheim</title><link>https://news.typo3.com/article/typo3org-code-sprint-rosenheim</link><comments>https://news.typo3.com/article/typo3org-code-sprint-rosenheim#comments</comments><pubDate>Sat, 14 May 2016 10:08:00 +0200</pubDate><dc:creator>Stefan Busemann</dc:creator><guid>https://news.typo3.com/article/typo3org-code-sprint-rosenheim</guid><description>Cleaning the house. From 12th to 14th of may 2016 that typo3.org team met in Rosenheim. </description></item>


    
        
<item><title>TYPO3Camp Venlo 2016</title><link>https://news.typo3.com/article/typo3camp-venlo-2016</link><comments>https://news.typo3.com/article/typo3camp-venlo-2016#comments</comments><pubDate>Tue, 10 May 2016 13:31:00 +0200</pubDate><dc:creator>News team</dc:creator><guid>https://news.typo3.com/article/typo3camp-venlo-2016</guid><description>April 22nd and 23rd marked the dates for the TYPO3Camp Venlo 2016. It was the fourth time the event took place. Together with a codesprint at MaxServ prior to T3CV this maxed out activity in the dutch TYPO3 community.</description></item>


    
        
<item><title>TYPO3-PSA-2016-001: Critical vulnerabilities in ImageMagick</title><link>https://news.typo3.com/security/advisory/typo3-psa-2016-001</link><comments>https://news.typo3.com/security/advisory/typo3-psa-2016-001#comments</comments><pubDate>Thu, 05 May 2016 13:00:00 +0200</pubDate><dc:creator>Helmut Hummel</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-psa-2016-001</guid><description>Multiple vulnerabilities in ImageMagick have been discovered, Remote Code Execution being one of them.</description></item>


    
        
<item><title>TYPO3 v8.1 - Tightening the screws</title><link>https://news.typo3.com/article/typo3-v81-tightening-the-screws</link><comments>https://news.typo3.com/article/typo3-v81-tightening-the-screws#comments</comments><pubDate>Tue, 03 May 2016 16:00:00 +0200</pubDate><dc:creator>TYPO3 CMS Core Team</dc:creator><guid>https://news.typo3.com/article/typo3-v81-tightening-the-screws</guid><description>Today, the TYPO3 community published the second sprint release of the v8 series of TYPO3, the enterprise content management.</description></item>


    



    </channel>
</rss>
