TYPO3 13.4.14 and 12.4.33 maintenance releases published
The versions 13.4.14 and 12.4.33 of the TYPO3 Enterprise Content Management System have just been released.
Read moreTYPO3 v14 Release Schedule: A Smarter Way Forward
A refined release cycle, new structures, and evolving priorities: TYPO3 v14 isn’t just about features — it’s about building better together. Here's how we're shaping the next chapter.
May 2025: Developer Appreciation Day (DAD)
Each month, we take the opportunity to celebrate TYPO3 contributors in our Developer Appreciation Day post. Please take a moment to share gratitude for their continued passion, commitment, and time they give to making TYPO3 CMS awesome.
Seamless Deployment — Enhancing TYPO3 Documentation for a Smooth Transition From Local to Live
This interim report outlines substantial progress made on the community budget initiative to improve documentation for deploying TYPO3.
TYPO3 13.4.13 and 12.4.32 maintenance releases published
The versions 13.4.13 and 12.4.32 of the TYPO3 Enterprise Content Management System have just been released.
TYPO3-EXT-SA-2025-008: Multiple vulnerabilities in extension "Front End User Registration" (sr_feuser_register)
It has been discovered that the extension "Front End User Registration" (sr_feuser_register) is susceptible to Remote Code Execution and Insecure Direct Object Reference.
TYPO3-EXT-SA-2025-007: Multiple vulnerabilities in extension "Backup Plus" (ns_backup)
It has been discovered that the extension "Backup Plus" (ns_backup) is susceptible to Command Injection, Predictable Resource Location and Cross-Site Scripting.
TYPO3-EXT-SA-2025-006: Insecure Direct Object Reference in extension "femanager" (femanager)
It has been discovered that the extension "femanager" (femanager) is susceptible to Insecure Direct Object Reference.
TYPO3-EXT-SA-2025-005: Cross-Site Scripting in extension "[clickstorm] SEO" (cs_seo)
It has been discovered that the extension "[clickstorm] SEO" (cs_seo) is susceptible to Cross-Site Scripting.
TYPO3-EXT-SA-2025-004: Insecure Direct Object Reference in extension "Download manager" (reint_downloadmanager)
It has been discovered that the extension "Download manager" (reint_downloadmanager) is susceptible to Insecure Direct Object Reference.