Extension Repository Shows Localization Status
The TYPO3 Extension Repository now includes the status of translations for extensions drawn from Crowdin. This is an exciting development because TYPO3 is an international community. Previously, it was difficult to find out the status of translation for particular extensions, and now it is publicly available for all users to see.
Read moreA First Glimpse of TYPO3 v11
TYPO3 v11 System Requirements and Release Dates.
TYPO3 10.4.10 and 9.5.23 security releases published
The versions 10.4.10 and 9.5.23 of the TYPO3 Enterprise Content Management System have just been released.
TYPO3-PSA-2020-003: Mitigation of Cross-Site Scripting Vulnerabilities in File Upload Handling
Repeating and refining public service announcement TYPO3-PSA-2019-010.
TYPO3-PSA-2020-002: Protecting Install Tool with Sudo Mode
Accessing Install Tool via TYPO3 Backend requires password verification - known as Sudo Mode.
TYPO3-CORE-SA-2020-012: XML External Entity in Dashboard Widget
It has been discovered that TYPO3 CMS is susceptible to XML external entity processing.
TYPO3-CORE-SA-2020-011: Cleartext storage of session identifier
It has been discovered that TYPO3 CMS is susceptible to sensitive data exposure.
TYPO3-CORE-SA-2020-010: Cross-Site Scripting in Fluid view helpers
It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting..
TYPO3-CORE-SA-2020-009: Cross-Site Scripting through Fluid view helper arguments
It has been discovered that the Fluid Engine is vulnerable to cross-site scripting.
TYPO3-EXT-SA-2020-020: Denial of Service in extension "Authenticator" (defbu_authenticator)
It has been discovered that the extension "Authenticator" (defbu_authenticator) is susceptible to Denial of Service.