Author: Torben Hansen
- Developer & Technology
- TYPO3 Extensions
TYPO3-EXT-SA-2024-003: Multiple vulnerabilities in "Events 2" (events2)
-
Torben Hansen
It has been discovered that the extension "Events 2" (events2) is susceptible to Cache Poisoning, Insecure Direct Object Reference and SQL wildcard injection.
Read more- Developer & Technology
- TYPO3 Extensions
TYPO3-EXT-SA-2024-002: Authentication Bypass in "OpenID Connect Authentication" (oidc)
-
Torben Hansen
It has been discovered that the extension "OpenID Connect Authentication" (oidc) is susceptible to Authentication Bypass.
- Developer & Technology
- TYPO3 Extensions
TYPO3-EXT-SA-2024-001: Broken Access Control in extension "Event management and registration" (sf_event_mgt)
-
Torben Hansen
It has been discovered that the extension "Event management and registration" (sf_event_mgt) is susceptible to Broken Access Control.
- Showcase & Success
- Developer & Technology
- Product Updates & Roadmap
Streamlining TYPO3 Extension Visibility: TER's Packagist Integration
-
Torben Hansen
The absence of a centralized view of all available TYPO3 extensions has made it tough for users to discover extensions to meet their needs. We've long sought a solution to simplify this process. Now, TYPO3 extensions solely on Packagist are visible in the TYPO3 Extension Repository.
- Developer & Technology
- TYPO3 Extensions
TYPO3-EXT-SA-2023-011: Configuration Injection in extension "Direct Mail" (direct_mail)
-
Torben Hansen
It has been discovered that the extension "Direct Mail" (direct_mail) is susceptible to Configuration Injection.
- Developer & Technology
- TYPO3 Extensions
TYPO3-EXT-SA-2023-010: Broken Access Control in extension "femanager" (femanager)
-
Torben Hansen
It has been discovered that the extension "femanager" (femanager) is susceptible to Broken Access Control.
- Developer & Technology
- TYPO3 Extensions
TYPO3-EXT-SA-2023-009: Insecure Direct Object Reference in extension "Content Consent" (content_consent)
-
Torben Hansen
It has been discovered that the extension "Content Consent" (content_consent) is susceptible to Insecure Direct Object Reference.
- Developer & Technology
- TYPO3 Extensions
TYPO3-EXT-SA-2023-008: Broken Access Control in extension "femanager" (femanager)
-
Torben Hansen
It has been discovered that the extension "femanager" (femanager) is susceptible to Broken Access Control.
- Developer & Technology
- TYPO3 Extensions
TYPO3-EXT-SA-2023-007: Broken Access Control in extension "hCaptcha for EXT:form" (hcaptcha)
-
Torben Hansen
It has been discovered that the extension "hCaptcha for EXT:form" (hcaptcha) is susceptible to Broken Access Control.
- Developer & Technology
- TYPO3 Extensions
TYPO3-EXT-SA-2023-006: Multiple vulnerabilities in extension "Canto Extension" (canto_extension)
-
Torben Hansen
It has been discovered that the extension "Canto Extension" (canto_extension) is susceptible to Server Side Request Forgery and Remote Code Execution.