Community Budget Report: A Modern Rich Text Editor (RTE) Experience With TipTap
In this report, Florian Langer shares the story behind his community budget idea and presents the first results of the new TipTap rich-text editor integration.
Read moreTYPO3 13.4.19 and 12.4.38 maintenance releases published
The versions 13.4.19 and 12.4.38 of the TYPO3 Enterprise Content Management System have just been released.
Vote Now for the TYPO3 Best Extension Award 2025
TYPO3 has always been built on collaboration and the strength of open source. One of the greatest advantages of our ecosystem is the wide range of extensions that make TYPO3 as powerful and flexible as it is. These extensions are created and maintained by individuals and teams who dedicate their time and expertise to improving TYPO3 for everyone.
TYPO3-EXT-SA-2025-013: Vulnerability in bundled package in extension "Base Excel" (base_excel)
It has been discovered that the extension "Base Excel" (base_excel) bundles a vulnerable version of “phpoffice/phpspreadsheet“ which is susceptible to Server-Side Request Forgery.
TYPO3-EXT-SA-2025-012: Cross-Site Scripting in extension "Form to Database" (form_to_database)
It has been discovered that the extension "Form to Database" (form_to_database) is susceptible to Cross-Site Scripting.
TYPO3-CORE-SA-2025-023: Information Disclosure via CSV Download
It has been discovered that TYPO3 CMS is susceptible to information disclosure.
TYPO3-CORE-SA-2025-022: Information Disclosure in Workspaces Module
It has been discovered that TYPO3 CMS is susceptible to information disclosure.
TYPO3-CORE-SA-2025-021: Broken Access Control in Backend AJAX Routes
It has been discovered that TYPO3 CMS is susceptible to broken access control.
TYPO3-CORE-SA-2025-020: Information Disclosure via File Abstraction Layer
It has been discovered that TYPO3 CMS is susceptible to information disclosure.
TYPO3-CORE-SA-2025-019: Insufficient Entropy in Password Generation
It has been discovered that TYPO3 CMS is susceptible to insufficient entropy.