TYPO3 News & Events Hub
What’s new & what’s comin’
TYPO3 7.6.54 and 8.7.43 ELTS Released
Still sticking to an older version of TYPO3? Today, 7.6.54 and 8.7.43 have been released. Staying on top of maintenance updates should be a top priority - Gain peace of mind by opting for one of TYPO3 GmbH’s Extended Support offers!
Read moreTYPO3 10.4.20, 9.5.30 and 11.3.3 maintenance releases published
The versions 10.4.20, 9.5.30 and 11.3.3 of the TYPO3 Enterprise Content Management System have just been released.
About the Latest TYPO3 Core Security Release
The security releases published on Tuesday, August 10, 2021, contained a very important security bug fix. It removes malicious and incorrect HTML from rich-text-enabled fields. However, it has also caused problems for a number of sites.
Report From “QA Best Practices Usable by Community” (August 2021)
Thanks to all of the community members who voted for our budget. This report will provide an overview of the outcome for the first half of this year.
TYPO3 7.6.53 and 8.7.42 ELTS Released
Still sticking to an older version of TYPO3? Today, 7.6.53 and 8.7.42 have been released. Staying on top of maintenance updates should be a top priority - Gain peace of mind by opting for one of TYPO3 GmbH’s Extended Support offers!
TYPO3-EXT-SA-2021-014: SQL Injection in extension "Newsletter" (newsletter)
It has been discovered that the extension"Newsletter" (newsletter) is susceptible to SQL Injection.
TYPO3-EXT-SA-2021-013: Multiple vulnerabilities in Extension "Dated News" (dated_news)
It has been discovered that the extension"Dated News" (dated_news) is susceptible to SQL Injection, Cross-Site Scripting, Information Disclosure and Broken Access Control.
TYPO3-EXT-SA-2021-012: Cross Site Scripting in Extension "Yoast SEO for TYPO3" (yoast_seo)
It has been discovered that the extension "Yoast SEO for TYPO3" (yoast_seo) is susceptible to Cross Site Scripting.
TYPO3-EXT-SA-2021-011: Multiple vulnerabilities in Extension "Miniorange Saml" (miniorange_saml)
It has been discovered that the extension "Miniorange Saml" (miniorange_saml) is susceptible to Cross-Site Scripting, Sensitive Data Exposure and vulnerable 3rd Party Components.
TYPO3-EXT-SA-2021-010: Cross-Site Scripting in Extension "femanager" (femanager)
It has been discovered that the extension "femanager" (femanager) is susceptible to Cross-Site Scripting.