TYPO3-SA-2010-015: Multiple vulnerabilities in third-party extensions
Several vulnerabilities have been found in the following third party TYPO3 extensions: Event (event), Fe user statistic (festat), JW Calendar (jw_calendar), Questionnaire (ke_questionnaire), Branchenbuch [Yellow Pages] (mh_branchenbuch), Webkit PDFs (webkitpdf), xaJax Shoutbox (vx_xajax_shoutbox)
Read moreSECURITY-ISSUES-IN-THIRD-PARTY-TYPO3-EXTENSIONS: Security issues in third-party TYPO3 extensions
Security vulnerabilities have been discovered in third-party TYPO3 extensions event, festat, jw_calendar, ke_questionnaire, mh_branchenbuch, webkitpdf, vx_xajax_shoutbox
TYPO3-SA-2010-014: TYPO3 Security Bulletin
It has been discovered that the extension phpMyAdmin (phpmyadmin) is vulnerable to Broken Access Control.
SECURITY-ISSUE-IN-THIRD-PARTY-TYPO3-EXTENSION-PHPMYADMIN-PHPMYADMIN: Security issue in third party TYPO3 extension "phpMyAdmin" (phpmyadmin)
A vulnerabilitiy has been discovered in the third party TYPO3 extension phpMyAdmin.
MULTIPLE-SECURITY-ISSUES-FOUND-IN-TYPO3-CORE-2: Multiple security issues found in TYPO3 core
It has been discovered that TYPO3 Core is vulnerable to Cross-Site Scripting (XSS), Open Redirection, SQL Injection, Broken Authentication and Session Management, Insecure Randomness, Information Disclosure and Arbitrary Code Execution.
SECURITY-ISSUE-THIRD-PARTY-TYPO3-EXTENSION-FRONTEND-USER-REGISTRATION-SR-FEUSER-REGISTER: Security issue third party TYPO3 extension "Frontend User Registration" (sr_feuser_register)
A security vulnerabilitiy have been discovered in the third party TYPO3 extension sr_feuser_register
TYPO3-SA-2010-013: Vulnerabilitiy in extension Front End User Registration (sr_feuser_register)
It has been discovered that the extension Frontend User Registration (sr_feuser_register) is susceptible to Security Misconfiguration.
TYPO3-SA-2010-011: Vulnerabilitiy in extension 404 Error Page Handling (error_404_handling)
It has been discovered that the extension 404 Error Page Handling (error_404_handling) is susceptible to SQL Injection attacks.
TYPO3-SA-2010-010: Vulnerabilitiy in extension Tip-A-Friend (tipafriend)
It has been discovered that the extension Tip-A-Friend (tipafriend) is susceptible to Cross Site Scripting (XSS) attacks.
TYPO3-SA-2010-009: Vulnerabilitiy in extension Frontend User Registration (sr_feuser_register)
It has been discovered that the extension Frontend User Registration (sr_feuser_register) is susceptible to Cross Site Scripting (XSS) attacks.