Author: Oliver Hader
Oliver started to work with TYPO3 in 2005 and was fascinated by the product and its universe. Since 2007 he is member of the TYPO3 Core Team. After going back to university in 2014 for achieving a postgraduate master degree in internet web science, he is now researching on advanced web technology topics in general and for TYPO3 in particular. In his spare time, Oliver loves to go cycling cross-country in the uplands around Hof (Germany) in northern Bavaria - at the region where he's living as well.
- Developer & Technology
- TYPO3 CMS
TYPO3-CORE-SA-2020-005: Insecure Deserialization in Backend User Settings
-
Oliver Hader
It has been discovered that TYPO3 CMS is vulnerable to insecure deserialization.
Read more- Developer & Technology
- TYPO3 Extensions
TYPO3-EXT-SA-2020-008: Cross-Site Scripting in "SVG Sanitizer" (svg_sanitizer)
-
Oliver Hader
It has been discovered that the extension "SVG Sanitizer" (svg_sanitizer) is vulnerable to Cross-Site Scripting.
- Developer & Technology
- TYPO3 CMS
TYPO3-CORE-SA-2020-004: Class destructors causing side-effects when being unserialized
-
Oliver Hader
It has been discovered that TYPO3 CMS is vulnerable to insecure deserialization.
- Developer & Technology
- TYPO3 CMS
TYPO3-CORE-SA-2020-003: Cross-Site Scripting in Link Handling
-
Oliver Hader
It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting.
- Developer & Technology
- TYPO3 CMS
TYPO3-CORE-SA-2020-002: Cross-Site Scripting in Form Engine
-
Oliver Hader
It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting.
- Developer & Technology
- TYPO3 CMS
TYPO3-CORE-SA-2020-001: Information Disclosure in Password Reset
-
Oliver Hader
It has been discovered that TYPO3 CMS is susceptible to information disclosure.
- Developer & Technology
TYPO3 10.4.2 and 9.5.17 security releases published
-
Oliver Hader
The versions 10.4.2 and 9.5.17 of the TYPO3 Enterprise Content Management System have just been released.
- Developer & Technology
- Product Updates & Roadmap
TYPO3 10.2.2, 9.5.13 and 8.7.30 security releases published
-
Oliver Hader
The TYPO3 Community announces the versions 10.2.2, 9.5.13 LTS and 8.7.30 LTS of the TYPO3 Enterprise Content Management System.
- Developer & Technology
- TYPO3 CMS
TYPO3-CORE-SA-2019-026: Insecure Deserialization in Query Generator & Query View
-
Oliver Hader
It has been discovered that TYPO3 CMS is vulnerable to insecure deserialization.
- Developer & Technology
- TYPO3 CMS
TYPO3-CORE-SA-2019-025: SQL Injection in low-level Query Generator
-
Oliver Hader
It has been discovered that TYPO3 CMS is vulnerable to SQL injection.