TYPO3 News & Events Hub
What’s new & what’s comin’
SkillDisplay - Time for a new onboarding process
Getting colleagues on board and ready for productive work can be a time-consuming challenge. Here is how you can support that process with SkillDisplay.
Read moreTYPO3 10.4.16 and 9.5.27 maintenance releases published
The versions 10.4.16 and 9.5.27 of the TYPO3 Enterprise Content Management System have just been released.
Meet Volker Graubaum (Part 3), Chief Product Officer, TYPO3, Germany (Application Podcast S1E13)
In today’s episode, we rejoin my epic conversation with TYPO3 Chief Product Officer, Volker Graubaum, for part three of three. We talk about TYPO3 as a community product, communication as part of product development, and breaking down TYPO3’s theme-based roadmap. If you haven’t heard the first two parts, you can find them wherever you’re listening to me now.
TYPO3 Version 11.2 — Escape the Orbit
Lightspeed ahead! Our quest continues with the release of TYPO3 version 11.2 today. Performance and efficiency are not only important attributes in space flights. The new sprint release of the TYPO3 v11 series comes with improvements that make working in the backend lightning fast and a pure pleasure. Read on to learn more about the exciting features that will take your TYPO3 project into the stratosphere.
April 2021: Developer Appreciation Day (DAD)
Each month, we take the opportunity to celebrate contributors in our Developer Appreciation Day post. Please take a moment to share gratitude for their continued passion, commitment, and time they give to making TYPO3 CMS awesome.
TYPO3-EXT-SA-2021-007: Cross-Site Scripting in extension "Bootstrap Package" (bootstrap_package)
It has been discovered that the extension "Bootstrap Package" (bootstrap_package) is susceptible to Cross-Site Scripting.
TYPO3-EXT-SA-2021-006: Server-side request forgery in extension "Yoast SEO for TYPO3" (yoast_seo)
It has been discovered that the extension "Yoast SEO for TYPO3" (yoast_seo) is susceptible to Server-side request forgery (SSRF).
TYPO3-EXT-SA-2021-005: SQL Injection in extension "Dynamic Content Element" (dce)
It has been discovered that the extension "Dynamic Content Element" (dce) is susceptible to SQL Injection.
TYPO3-EXT-SA-2021-004: Cross-Site Scripting in extension "2 Clicks for External Media" (media2click)
It has been discovered that the extension "2 Clicks for External Media" (media2click) is susceptible to Cross-Site Scripting.
Documentation Team Sweeping Week
The Documentation Team conducts a sweeping week every month, where we try to touch, address and close issues and PRs.