<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">
    <channel>
        <title>Official TYPO3 news</title>
        <description>Posts by author Andreas Fernandez</description>
        <language>en</language>
        <link>https://news.typo3.com/article/author/andreas-fernandez/blog.author.xml</link>
        <lastBuildDate>Fri, 24 Jul 2026 02:48:33 +0200</lastBuildDate>
        
    
    
        
<item><title>TYPO3-CORE-SA-2019-024: Directory Traversal on ZIP extraction</title><link>https://news.typo3.com/security/advisory/typo3-core-sa-2019-024</link><comments>https://news.typo3.com/security/advisory/typo3-core-sa-2019-024#comments</comments><pubDate>Tue, 17 Dec 2019 11:09:49 +0100</pubDate><dc:creator>Andreas Fernandez</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-core-sa-2019-024</guid><description>It has been discovered that TYPO3 CMS is vulnerable to directory traversal.</description></item>


    
        
<item><title>TYPO3-CORE-SA-2019-023: Cross-Site Scripting in Filelist Module</title><link>https://news.typo3.com/security/advisory/typo3-core-sa-2019-023</link><comments>https://news.typo3.com/security/advisory/typo3-core-sa-2019-023#comments</comments><pubDate>Tue, 17 Dec 2019 11:05:10 +0100</pubDate><dc:creator>Andreas Fernandez</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-core-sa-2019-023</guid><description>It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting.</description></item>


    
        
<item><title>TYPO3-CORE-SA-2019-020: Insecure Deserialization in TYPO3 CMS</title><link>https://news.typo3.com/security/advisory/typo3-core-sa-2019-020</link><comments>https://news.typo3.com/security/advisory/typo3-core-sa-2019-020#comments</comments><pubDate>Tue, 25 Jun 2019 10:06:00 +0200</pubDate><dc:creator>Andreas Fernandez</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-core-sa-2019-020</guid><description>It has been discovered that TYPO3 CMS is vulnerable to insecure deserialization.</description></item>


    
        
<item><title>TYPO3-CORE-SA-2019-019: Arbitrary Code Execution and Cross-Site Scripting in Backend API</title><link>https://news.typo3.com/security/advisory/typo3-core-sa-2019-019</link><comments>https://news.typo3.com/security/advisory/typo3-core-sa-2019-019#comments</comments><pubDate>Tue, 25 Jun 2019 10:05:00 +0200</pubDate><dc:creator>Andreas Fernandez</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-core-sa-2019-019</guid><description>It has been discovered, that TYPO3 CMS is vulnerable to arbitrary code execution and cross-site scripting.</description></item>


    
        
<item><title>TYPO3-CORE-SA-2019-014: Information Disclosure in Backend User Interface</title><link>https://news.typo3.com/security/advisory/typo3-core-sa-2019-014</link><comments>https://news.typo3.com/security/advisory/typo3-core-sa-2019-014#comments</comments><pubDate>Tue, 25 Jun 2019 10:00:00 +0200</pubDate><dc:creator>Andreas Fernandez</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-core-sa-2019-014</guid><description>It has been discovered that TYPO3 CMS is susceptible to information disclosure.</description></item>


    



    </channel>
</rss>
