Skip to main navigation Skip to main content Skip to page footer

TYPO3 News & Events Hub

What’s New & What’s Coming

Fourth edition of the TYPO3 Developer Days

We're happy to announce this years edition of the TYPO3 Developer Days.The fourth edition of this international TYPO3 community event, also known as T3DD, will take place from Thursday 14th to Sunday 17th May, 2009. The location for the event will be...

January '09 Bug Day this Friday

It's that time of the month again, last Friday of th month is getting closer, and with it also TYPO3 Bug Day.

TYPO3 4.2.5, 4.1.9 and 4.0.11

The TYPO3 Core Team announces versions 4.2.5, 4.1.9 and 4.0.11 of the TYPO3 Enterprise Content Management System.

Multiple security issues found in TYPO3 core

It has been discovered that TYPO3 Core is vulnerable to Broken Authentication and Session Management, Cross-Site Scripting, Insecure Randomness and Remote Command Execution.

Multiple vulnerabilities in TYPO3 Core

It has been discovered that TYPO3 Core is vulnerable to Broken Authentication and Session Management, Cross-Site Scripting, Insecure Randomness and Remote Command Execution.

DAM 1.1.0 has been released

The DAM development team is proud to announce the release of version 1.1.0 of Digital Asset Management (DAM), the bugfix Release after "The Big Sleep".

Security issues in several third party TYPO3 extensions

Security vulnerabilities have been discovered in the following third party TYPO3 extensions: "phpMyAdmin" (phpmyadmin), "DR Wiki - Typo3 Wiki extension" (dr_wiki), "WEC Discussion Forum" (wec_discussion), "Vox populi" (mv_vox_populi), "SB Universal...

TYPO3 Security Bulletin

Several vulnerabilities have been found in the following third party TYPO3 extensions: "Vox populi" (mv_vox_populi), "SB Universal Plugin" (SBuniplug), "Simple File Browser" (simplefilebrowser), "TU-Clausthal ODIN" (tuc_odin), "TU-Clausthal Staff"...

TYPO3 Security Bulletin

It has been discovered that the extension DR Wiki - Typo3 Wiki extension (dr_wiki) is vulnerable to Cross-Site Scripting (XSS).

TYPO3 Security Bulletin

It has been discovered that the extension WEC Discussion Forum (wec_discussion) is vulnerable to Cross-Site Scripting (XSS) and SQL injection.

TYPO3 Security Bulletin

It has been discovered that the extension phpMyAdmin (phpmyadmin) is vulnerable to SQL injections via XSRF.

TYPO3 Coding Weekend in Karlsruhe

From December 13th-14th 2008 the core and core-related developers Ingmar Schlecht, Sebastian Kurfürst, Oliver Hader, Andreas Wolf and Jochen Rau arranged a TYPO3 Coding Weekend in Karlsruhe/Germany. The session took place in the office of punkt.de -...

Podcast about Transition Days published

Do you remember the TYPO3 Transition Days? I promised to publish a podcast featuring some statements by the participants of the meeting and now - after enjoying two weeks of holidays in a warm country - I found the time

Update on recent typo3.org issue

Dear user of typo3.org, after a while of (almost) non-stop activity by members of the security team as well as the core team and the folks from punkt.de the front user login on typo3.org has been enabled again. This means that as soon as you have...

Sponsoring of Form Project Completed

I am very pleased to announce that the financing of the new FORM sponsored project has been completed. The main supporters of this project were a network of German universities.