TYPO3-CORE-SA-2019-025: SQL Injection in low-level Query Generator
It has been discovered that TYPO3 CMS is vulnerable to SQL injection.
Read moreTYPO3-CORE-SA-2019-024: Directory Traversal on ZIP extraction
It has been discovered that TYPO3 CMS is vulnerable to directory traversal.
TYPO3-CORE-SA-2019-023: Cross-Site Scripting in Filelist Module
It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting.
TYPO3-CORE-SA-2019-022: Cross-Site Scripting in Link Handling
It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting in Link Handling.
TYPO3-CORE-SA-2019-021: Cross-Site Scripting in Form Framework validation handling
It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting.
TYPO3-PSA-2019-011: Possible Insecure Deserialization in Extbase Request Handling
It has been discovered that TYPO3 CMS can be vulnerable to insecure deserialization.
TYPO3-PSA-2019-010: Cross-Site Scripting Vulnerabilities in File Upload Handling
It has been discovered that TYPO3 is susceptible to cross-site scripting.
TYPO3 Version 10.2 — Treasure Hunting!
TYPO3 v10.2 is out now — the last sprint release of the year. A lot of functionality was developed during the TYPO3 Initiative Week (T3INIT19) and TYPO3 v10.2 contains some of these components. We are excited to see that we made a big step forward to shape the next LTS release.
TYPO3 Initiative Week—Insider Report
TYPO3 Initiative Week was introduced this year to bring together members of TYPO3 Initiatives to drive development forward. Core development is now organized into Strategic Initiatives where teams can focus on a targeted effort on one task. This week-long event provided a chance for everyone to connect across the initiatives.
Impressions of the Developer Days from the Documentation Team
In this post, the Documentation Team and contributors share their impressions from TYPO3 Developer Days 2019. They had sessions to talk about the state of documentation, to demonstrate how to contribute, and to generate new ideas and feedback.