TYPO3-CORE-SA-2022-011: By-passing Cross-Site Scripting Protection in HTML Sanitizer
It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting.
Read moreTYPO3-CORE-SA-2022-010: Cross-Site Scripting in view helper
It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting.
TYPO3-CORE-SA-2022-009: Stored Cross-Site Scripting via FileDumpController
It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting.
TYPO3-CORE-SA-2022-008: Missing check for expiration time of password reset token for backend users
It has been discovered that TYPO3 CMS is vulnerable to broken access control.
TYPO3-CORE-SA-2022-007: User Enumeration via Response Timing
It has been discovered that TYPO3 CMS is vulnerable to information disclosure.
TYPO3-CORE-SA-2022-006: Denial of Service in Page Error Handling
It has been discovered that TYPO3 CMS is susceptible to denial of service.
Documentation Team—Summer Update 2022
It’s been a busy summer in the northern hemisphere and we’ve got plenty of updates to share.
The Top Five Extensions Every TYPO3 Website Needs
TYPO3 is a powerful Content Management System that allows anyone to create and manage websites. However, one of the biggest challenges can be finding the right extensions for your website.
August 2022: Developer Appreciation Day (DAD)
Each month, we take the opportunity to celebrate contributors in our TYPO3 Developer Appreciation Day blog post. Please take a moment to share gratitude for their continued passion, commitment, and time invested in making TYPO3 CMS awesome.
Introducing the TYPO3 Content Blocks
We’re excited to announce that we’re working to introduce Content Blocks as a TYPO3 Core system extension, and we welcome developer help to achieve our goals.