TYPO3-PSA-2020-001: Critical vulnerability in legacy versions of TYPO3 CMS
It has been discovered that TYPO3 CMS is susceptible to sensitive information disclosure in previous TYPO3 versions which are not maintained by the community anymore.
Read moreTYPO3 Accessibility Initiative Needs Your Feedback
The TYPO3 Accessibility Initiative was reinitiated in June, 2019 by members of the TYPO3 community. Please help them by filling in their short survey.
Skill Verification Access for the TYPO3 Academic Committee
Academic institutions are invited to set up their organization as part of a network of institutions that can verify TYPO3 skills according to the SkillDisplay SkillSets for TYPO3 CMS.
Meet at the Summits—TYPO3 Conference 2019
The TYPO3 Conference 2019 gives you a chance to meet the people shaping this CMS for the future. New this year, the TYPO3 Conference is inviting attendees from business, government, NGOs, and higher education to join us for focused events that cater to their needs.
TYPO3 v8.7.24 LTS released
The TYPO3 Community announces version 8.7.24 LTS of the TYPO3 Enterprise Content Management System.
TYPO3 9.5.4 and 8.7.23 security releases published
The TYPO3 Community announces the versions 9.5.4 LTS and 8.7.23 LTS of the TYPO3 Enterprise Content Management System.
- Developer & Technology
- Security / TYPO3 CMS
TYPO3-CORE-SA-2019-008: Arbitrary Code Execution via File List Module
It has been discovered, that TYPO3 CMS is vulnerable to arbitrary code execution.
- Developer & Technology
- Security / TYPO3 CMS
TYPO3-CORE-SA-2019-007: Cross-Site Scripting in Form Framework
It has been discovered, that TYPO3 CMS is vulnerable to cross-site scripting.
- Developer & Technology
- Security / TYPO3 CMS
TYPO3-CORE-SA-2019-006: Cross-Site Scripting in Bootstrap CSS toolkit
It has been discovered, that TYPO3 CMS is vulnerable to cross-site scripting.
- Developer & Technology
- Security / TYPO3 CMS
TYPO3-CORE-SA-2019-005: Cross-Site Scripting in Fluid ViewHelpers
It has been discovered, that TYPO3 CMS is vulnerable to cross-site scripting.