TYPO3 News & Events Hub
What’s New & What’s Coming
T3CON24 Recap – The Future of Shopping: How AI and Spatial Computing Will Transform E-Commerce
At T3CON, two experts from Shopware shared their insights into how AI and spatial computing are changing retail experiences in-store and online, and how AI is shaping the future of ecommerce.
Read moreTYPO3 13.4.13 and 12.4.32 maintenance releases published
The versions 13.4.13 and 12.4.32 of the TYPO3 Enterprise Content Management System have just been released.
TYPO3 9.5.52, 10.4.51, and 11.5.45 ELTS Released
Still sticking to an older version of TYPO3? Today, 9.5.52, 10.4.51 and 11.5.45 have been released. Staying on top of maintenance updates should be a top priority - Gain peace of mind by opting for one of TYPO3 GmbH’s Extended Support offers!
Winning Votes With TYPO3: A Guide to Content Management for Political Parties
TYPO3 enables political parties to deliver constituents engaging web experience with a robust tool set full of powerful features. Learn about the benefits of a CMS for political parties.
Report From the Best Practices Remote Day April 2025
The TYPO3 Best Practices Team gathered for another Remote Day. This time Karsten Nowak and Felix Althaus joined the team members Oliver Klee and Bernd Sengupta. We focused on some long-standing issues with the Tea Example (tea) extension, as well as...
Using TYPO3 for Small Projects Pt. 1
Discover how easy it is to install TYPO3 and use it for your personal blog or microsite—even beyond enterprise projects.
Multiple vulnerabilities in extension "Front End User Registration" (sr_feuser_register)
It has been discovered that the extension "Front End User Registration" (sr_feuser_register) is susceptible to Remote Code Execution and Insecure Direct Object Reference.
Multiple vulnerabilities in extension "Backup Plus" (ns_backup)
It has been discovered that the extension "Backup Plus" (ns_backup) is susceptible to Command Injection, Predictable Resource Location and Cross-Site Scripting.
Insecure Direct Object Reference in extension "femanager" (femanager)
It has been discovered that the extension "femanager" (femanager) is susceptible to Insecure Direct Object Reference.
Cross-Site Scripting in extension "[clickstorm] SEO" (cs_seo)
It has been discovered that the extension "[clickstorm] SEO" (cs_seo) is susceptible to Cross-Site Scripting.
Insecure Direct Object Reference in extension "Download manager" (reint_downloadmanager)
It has been discovered that the extension "Download manager" (reint_downloadmanager) is susceptible to Insecure Direct Object Reference.
TYPO3 9.5.51, 10.4.50, and 11.5.44 ELTS Released
Still sticking to an older version of TYPO3? Today, 9.5.51, 10.4.50 and 11.5.44 have been released. Staying on top of maintenance updates should be a top priority - Gain peace of mind by opting for one of TYPO3 GmbH’s Extended Support offers!
TYPO3 Trademark Usage: What’s Allowed and What’s Not
Clear guidelines to support your TYPO3 activities — and protect the brand we all share
TYPO3 13.4.12 and 12.4.31 security releases published
The versions 13.4.12 and 12.4.31 of the TYPO3 Enterprise Content Management System have just been released.
Privilege Escalation to System Maintainer
It has been discovered that TYPO3 CMS is susceptible to broken authentication.
Broken Authentication in Backend MFA
It has been discovered that TYPO3 CMS is susceptible to broken authentication.
Unrestricted File Upload in File Abstraction Layer
It has been discovered that TYPO3 CMS is susceptible to security misconfiguration.
Unverified Password Change for Backend Users
It has been discovered that TYPO3 CMS is susceptible to security misconfiguration.
Server-Side Request Forgery via Webhooks
It has been discovered that TYPO3 CMS is susceptible to server side request forgery..
Information Disclosure via DBAL Restriction Handling
It has been discovered that TYPO3 CMS is susceptible to information disclosure.