TYPO3 Developer Days 2022 Recap
The TYPO3 Developer Days is an international event for developers that takes place every year. For many developers in the community, It is the event…
TYPO3 Education Committee—TCCE Certification Team Update
Since the kick-off-phase, the TCCE Certification Team has been working on updating the skills for TYPO3 version 11. This is now officially complete.
Introducing the TYPO3 Content Blocks
We’re excited to announce that we’re working to introduce Content Blocks as a TYPO3 Core system extension, and we welcome developer help to achieve…
TYPO3 11.5.15 maintenance release published
The version 11.5.15 of the TYPO3 Enterprise Content Management System has just been released.
typo3.org Website Team Report Q2, 2022
The typo3.org team develops and maintains all the websites in the typo3.org universe. Working closely with other TYPO3 teams, we aim to satisfy every…
Happy 20th Birthday, TYPO3 Extension Repository
30 July 2022 marked the 20th anniversary of the first upload of a TYPO3 extension. We want to celebrate it and show some numbers.
TYPO3 11.5.14 maintenance release published
The version 11.5.14 of the TYPO3 Enterprise Content Management System has just been released.
TYPO3 11.5.13 and 10.4.31 maintenance releases published
The versions 11.5.13 and 10.4.31 of the TYPO3 Enterprise Content Management System have just been released.
TYPO3-EXT-SA-2022-014: SQL Injection in extension "LUX - TYPO3 Marketing Automation" (lux)
It has been discovered that the extension "LUX - TYPO3 Marketing Automation" (lux) is susceptible to SQL Injection.
TYPO3 Communication OKRs Initiative 2022/2023
Open Strategy Partners (OSP) is acting as Scrum master, and the project owner for the initiative is Mathias Bolt Lesniak.
In the early…
TYPO3 Education Committee—TCCE Certification Team Update
Meet & Greet at TYPO3 Education Committee Sprint in Düsseldorf
In Düsseldorf, we had six motivated team members, with contributors…
Growing Talent in the Job Market Desert
The call of businesses is strong and well-known—young tech talents are needed! But enticing a young audience to choose the path of IT…
Information From the Budget Q&A
This article contains information from that meeting as well as some additional facts and considerations.
Main Conclusions
- The …
TYPO3 Demo and QA Best Practices Join Forces
Demo Project
The TYPO3 demo site is available at demo.typo3.org. The goal of the project is to provide an instance where anyone is able…
This Is Lina Wolf, the New Documentation Team Co-Lead
“After completing my computer science studies in 2006, I got a boring Java job,” says Lina. “But then I met someone who showed me TYPO3…
TYPO3 11.5.12 and 10.4.30 maintenance releases published
The following TYPO3 updates have been released:
- TYPO3 11.5.12 LTS
- TYPO3 10.4.30 LTS
Further upgrade instructions
No database…
TYPO3-CORE-SA-2022-005: Insufficient Session Expiration in Admin Tool
It has been discovered that TYPO3 CMS is susceptible to broken access control.
TYPO3-CORE-SA-2022-004: Cross-Site Scripting in Frontend Login Mailer
It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting.
TYPO3-CORE-SA-2022-003: Cross-Site Scripting in Form Framework
It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting.
TYPO3-CORE-SA-2022-002: Information Disclosure via Exception Handling/Logger
It has been discovered that TYPO3 CMS is susceptible to information disclosure.
TYPO3-CORE-SA-2022-001: Information Disclosure via Export Module
It has been discovered that TYPO3 CMS is susceptible to information disclosure.
TYPO3 11.5.11 and 10.4.29 security releases published
The following TYPO3 updates have been released:
- TYPO3 11.5.11 LTS
- TYPO3 10.4.29 LTS
All versions are security releases and contain…
TYPO3-EXT-SA-2022-013: Cross-Site Scripting in extension "AMEOS - TarteAuCitron (GDPR cookie banner and tracking management / French RGPD compatible)" (ameos_tarteaucitron)
It has been discovered that the extension "AMEOS - TarteAuCitron (GDPR cookie banner and tracking management / French RGPD compatible)"…
TYPO3-EXT-SA-2022-012: Cross-Site Scripting in extension "Embedding schema.org vocabulary" (schema)
It has been discovered that the extension "Embedding schema.org vocabulary" (schema) is susceptible to Cross-Site Scripting.
TYPO3-EXT-SA-2022-011: Cross-Site Scripting in extension "Matomo Integration" (matomo_integration)
It has been discovered that the extension "Matomo Integration" (matomo_integration) is susceptible to Cross-Site Scripting.
TYPO3-EXT-SA-2022-010: Cross-Site Scripting in extension "libconnect" (libconnect)
It has been discovered that the extension "libconnect" (libconnect) is susceptible to Cross-Site Scripting.
typo3.org Website Team Report 2022 Q1
Sprints / t3o Remote Days
We have done t3o Remote Days on:
- January 15th and 25th
- February 15th and 25th
- March 15th and 25th
We…
Deprecation and Shutdown of TER SOAP Interface
The SOAP interface was introduced more than 15 years ago, for managing and uploading extensions. TYPO3 version 4.5 was the last version…
GDPR Report 2021
Data protection measures affect 983 TYPO3 Association members, and the 12,894 registered users of typo3.org. Olivier Dobberkau, Alain…
Documenting TYPO3 Version 12
Extension Authors Need Good Docs Too
It’s not sure integrators and editors that rely on up-to-date documentation. Extension authors…