- Security / TYPO3 Extensions
TYPO3-EXT-SA-2017-016: SQL Injection in extension "Download Center" (pits_downloadcenter)
It has been discovered that the extension "Download Center" (pits_downloadcenter) is susceptible to SQL Injection.
Read more- Security / TYPO3 Extensions
TYPO3-EXT-SA-2017-015: Cross Site-Scripting in extension "Smallads" (ke_smallads)
It has been discovered that the extension "Smallads" (ke_smallads) is susceptible to Cross-Site Scripting.
TYPO3 Association Funds TYPO3 Marketplace Initiative
Interview with Petra Hasenau, elected in the TYPO3 Association’s EAB
A brief interview with Petra Hasenau, recently elected as a board member in the TYPO3 Association’s Expert Advisory Board (EAB)
“Bringing people together who share the same passion” – TYPO3Camp Venlo 2017
The international TYPO3Camp Venlo was not just two days of sharing knowledge and touching on the latest technological advancements in the TYPO3 community. According to Mathias Schreiber 11, 12 and 13th of March were days meant to bring people together who share the same passion, TYPO3. A very worthwhile cause.
TYPO3 COOP – University gathering was held in Darmstadt
On September 20th and 21st the first TYPO3 University meeting was held in Darmstadt, Germany. Over 100 participants from Swiss, Austrian and German schools and universities were gathering at the Hochschule Darmstadt to discuss their contributions and involvement in the TYPO3 project.
move:elevator is a TYPO3 Platinum Member
Good news for move:elevator – effective immediately, the full-service agency is a TYPO3 Platinum Member. This is the highest member status the TYPO3 Association can award. move:elevator has already realised about 100 projects with this worldwide successful CMS.
- Security / TYPO3 Extensions
TYPO3-EXT-SA-2016-016: Multiple vulnerabilities in extension "http:BL Blocking" (mh_httpbl)
It has been discovered that the extension "http:BL Blocking" (mh_httpbl) is susceptible to SQL Injection and Cross-Site Scripting.
TYPO3Camp Venlo 2016
April 22nd and 23rd marked the dates for the TYPO3Camp Venlo 2016. It was the fourth time the event took place. Together with a codesprint at MaxServ prior to T3CV this maxed out activity in the dutch TYPO3 community.
- Security / TYPO3 Extensions
TYPO3-EXT-SA-2016-007: Multiple vulnerabilities in extension phpMyAdmin (phpmyadmin)
It has been discovered that the extension "phpMyAdmin" (phpmyadmin) is susceptible to unsafe comparison of XSRF/CSRF token, multiple full path disclosure vulnerabilities, multiple XSS vulnerabilities, insecure password generation in JavaScript.