Security Advisories
All Advisories
Follow TYPO3 security advisories as soon as they are published by subscribing to the dedicated security RSS feed.
TYPO3-EXT-SA-2011-001: Several vulnerabilities in extension phpMyAdmin (phpmyadmin)
It has been discovered that the extension phpMyAdmin (phpmyadmin) is vulnerable to Cross-Site Scripting, Local File Inclusion, Code Execution and Session Manipulation.
TYPO3-SA-2011-008: Directory Traversal and Code Injection vulnerability in extension phpMyAdmin (phpmyadmin)
It has been discovered that the extension phpMyAdmin (phpmyadmin) is vulnerable to Directory Traversal and Code Injection.
TYPO3-SA-2011-007: SQL Injection vulnerability in extension Faceted Search (ke_search)
It has been discovered that the extension Faceted Search (ke_search) is vulnerable to SQL Injection.
TYPO3-SA-2011-006: Several vulnerabilities in third party extensions
Several vulnerabilities have been found in the following third-party TYPO3 extensions: Photogallery (ce_gallery), SEO Photogallery by Evorion (evgallery)
TYPO3-SA-2011-005: Cross-Site Scripting and Open Redirection vulnerability in extension phpMyAdmin (phpmyadmin)
It has been discovered that the extension phpMyAdmin (phpmyadmin) is vulnerable to Cross-Site Scripting and Open Redirection.