Author: Helmut Hummel

SECURITY-ISSUES-IN-SEVERAL-THIRD-PARTY-TYPO3-EXTENSIONS-INCLUDING-FRONTEND-USER-REGISTRATION-SR-FEUSER-REGISTER-404-ERROR-PAGE-HANDLING-ERROR-404-HANDLING-AND-TIP-A-FRIEND-TIPAFRIEND: Security issues in several third party TYPO3 extensions including "Frontend User Registration" (sr_feuser_register), "404 Error Page Handling" (error_404_handling) and "Tip-A-Friend" (tipafriend)

Security vulnerabilities have been discovered in the third party TYPO3 extensions including sr_feuser_register, error_404_handling and tipafriend

SECURITY-ISSUES-IN-SEVERAL-THIRD-PARTY-TYPO3-EXTENSIONS-INCLUDING-MM-FORUM-MM-FORUM: Security issues in several third party TYPO3 extensions including "mm_forum" (mm_forum)

A security vulnerabilities has been discovered in the third party TYPO3 extensions including mm_forum, brainstorming, ch_lightem, chsellector, educator, mk_wastebasket, mydashboard, nf_cleandb, pd_diocesedatabase, reports_logview, sav_filter_abc, sav_filter_selectors, sav_filter_months, sk_bookreview, sk_simplegallery, t3quixplorer, t3sec_saltedpw, taskcenter_recent, tgm_newsletter, tmsw_cleandb, travelmate, yatse

TYPO3-SA-2010-004: Vulnerabilities in TYPO3 Core

It has been discovered that TYPO3 Core is vulnerable to Cross-Site Scripting, Authentication Bypass for frontend users and Information Disclosure.