Openness and Exceptional Eye Contact: Wolfgang Fiebig on the Unique Spirit of the TYPO3 Community
As we embrace 2024 and its upcoming events, we're excited to share something a little different with our community. Meet Wolfgang Fiebig, facilitator,…
Ticket Sale for TYPO3 Developer Days 2024 is now open!
Join one of the most anticipated events in the TYPO3 community. Please note that early bird tickets will be available until March 22, or until sold…
Turbo Boost Your TYPO3 Site to a Digital Experience Platform — Talent Management Edition
TYPO3 can be more than a content management system. The SkillDisplay extension can turn it into a skill management platform, both for agencies and…
TYPO3 11.5.36 maintenance release published
The version 11.5.36 of the TYPO3 Enterprise Content Management System has just been released.
Report From the EMPAMOS Barcamp and Networking Event in Nuremberg 2023
In November 2023, two members of the TYPO3 Motivation Research Team attended the EMPAMOS barcamp event to connect with others and learn more about the…
Report From The Content Types Team
The Content Types Team has had a productive couple of months. We showcased the Content Blocks extension at TYPO3camp RheinRuhr, and received valuable…
TYPO3-EXT-SA-2024-001: Broken Access Control in extension "Event management and registration" (sf_event_mgt)
It has been discovered that the extension "Event management and registration" (sf_event_mgt) is susceptible to Broken Access Control.
TYPO3-CORE-SA-2024-006: Improper Access Control Persisting File Abstraction Layer Entities via Data Handler
It has been discovered that TYPO3 CMS is susceptible to information disclosure.
TYPO3-CORE-SA-2024-005: Improper Access Control of Resources Referenced by t3:// URI Scheme
It has been discovered that TYPO3 CMS is susceptible to information disclosure.
TYPO3-CORE-SA-2024-004: Information Disclosure of Encryption Key in TYPO3 Install Tool
It has been discovered that TYPO3 CMS is susceptible to information disclosure.
TYPO3-CORE-SA-2024-003: Information Disclosure of Hashed Passwords in TYPO3 Backend Forms
It has been discovered that TYPO3 CMS is susceptible to information disclosure.
TYPO3-CORE-SA-2024-002: Code Execution in TYPO3 Install Tool
It has been discovered that TYPO3 CMS is vulnerable to code execution.
TYPO3-CORE-SA-2024-001: Path Traversal in TYPO3 File Abstraction Layer Storages
It has been discovered that TYPO3 CMS is susceptible to path traversal.
TYPO3 13.0.1, 12.4.11 and 11.5.35 security releases published
The versions 13.0.1, 12.4.11 and 11.5.35 of the TYPO3 Enterprise Content Management System have just been released.
TYPO3 Association General Assembly — 18 April 2024 in Zürich, Switzerland
Announcing the date and deadlines for the TYPO3 Association’s General Assembly. All members are invited to this central event in the democratic…
Full-Time TYPO3 Role for Mathias Bolt Lesniak
As a response to new demands on our organization, Mathias Bolt Lesniak has taken on a full-time role as project ambassador for TYPO3. His tasks…
blindwerk Strengthens TYPO3 Commitment with Platinum Membership Upgrade
blindwerk upgrades to TYPO3 Platinum Membership, showcasing dedication to open-source innovation and excellence in web solutions.
Open Source and Digital Sovereignty
Explore the intersection of digital sovereignty and open source. This article provides insights into autonomy, data security, and TYPO3's role in…
TYPO3 Association Co-Founds the Open Website Alliance
The international community organizations behind Drupal, Joomla, TYPO3, and WordPress join forces in a leadership-level alliance. The members of the…
Three Days of Inspo at Web Camp Venlo
Web Camp Venlo: The meeting place for software developers and experts with a focus on open source. Three days packed with workshops, knowledge…
Call for Community Budget Ideas (Q2/2024)
The TYPO3 Association has officially launched the second community budget process of 2024.
Daniel Fau appointed CEO of TYPO3 GmbH
The TYPO3 Association is delighted to announce the appointment of Daniel Fau as CEO of TYPO3 GmbH. Read more about the details that led to this…
TYPO3 v13.0—The Ocean's Calling
It’s time to celebrate, as we announce the first sprint release of the TYPO3 v13 series. TYPO3 version 13.0 is the first step towards the long-term…
Annual Report of the TYPO3 Documentation Team, 2023
The TYPO3 Documentation Team underwent dynamic changes throughout 2023, fostering resilience and innovation in maintaining and enhancing the project's…
T3DD24: Call for Papers
We're ready for your ideas! Submit your suggestion for a talk, session, or panel discussion until 31 March 2024.
TYPO3-EXT-SA-2023-011: Configuration Injection in extension "Direct Mail" (direct_mail)
It has been discovered that the extension "Direct Mail" (direct_mail) is susceptible to Configuration Injection.
TYPO3-EXT-SA-2023-010: Broken Access Control in extension "femanager" (femanager)
It has been discovered that the extension "femanager" (femanager) is susceptible to Broken Access Control.
TYPO3-EXT-SA-2023-009: Insecure Direct Object Reference in extension "Content Consent" (content_consent)
It has been discovered that the extension "Content Consent" (content_consent) is susceptible to Insecure Direct Object Reference.
TYPO3-CORE-SA-2023-007: By-passing Cross-Site Scripting Protection in HTML Sanitizer
It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting.
TYPO3-CORE-SA-2023-006: Weak Authentication in Session Handling
It has been discovered that TYPO3 CMS is susceptible to weak authentication.