TYPO3-EXT-SA-2016-030: SQL Injection in extension "Shibboleth Authentication" (shibboleth_auth)
It has been discovered that the extension "Shibboleth Authentication" (shibboleth_auth) is susceptible to SQL Injection.
Read moreTYPO3-EXT-SA-2016-029: Insecure Unserialize and SQL Injection in extension "Code Highlighter" (mh_code_highlighter)
It has been discovered that the extension "Code Highlighter" (mh_code_highlighter) is susceptible to Insecure Unserialize and SQL Injection.
TYPO3-EXT-SA-2016-028: Cross-Site Scripting in extension "Store Locator" (locator)
It has been discovered that the extension "Store Locator" (locator) is susceptible to Cross-Site Scripting.
TYPO3-EXT-SA-2016-027: Cross-Site Scripting in extension "HTML5 Video Player" (html5videoplayer)
It has been discovered that the extension "HTML5 Video Player" (html5videoplayer) is susceptible to Cross-Site Scripting.
TYPO3-EXT-SA-2016-026: Multiple vulnerabilities in extension "TC Directmail " (tcdirectmail)
It has been discovered that the extension "TC Directmail " (tcdirectmail) is susceptible to Cross Site-Scripting and SQL Injection.
TYPO3 Backpack Kickstarter Campaign
We want to build a new TYPO3 Backpack with your help!
This Week in TYPO3: T3CON16
On October 26 and 27, the 12th European TYPO3 conference took place in Munich, Germany. For the second time the conference was accompanied by the TYPO3 Award ceremony, celebrating and awarding the most outstanding TYPO3 projects of agencies and customers in 2015 / 2016 on the closing night.
Design Contest for typo3.org relaunch 2017
tl;dr: For the design and technical relaunch of typo3.org beginning in 2017, we would like to start a contest. You’re a creative designer or great at conception? Start your design program and have the chance to create the main design of typo3.org! The best three designs will be awarded with a prize.
TYPO3 CMS 6.2.28 and 7.6.12 released
The TYPO3 Community announces the versions 6.2.28 LTS and 7.6.12 LTS of the TYPO3 Enterprise Content Management System.