Event Report from TYPO3 Camp Vienna
In-person events are useful for both new or existing community members. You can meet the people you see online and create connections that support…
Event Report from TYPO3 Camp Vienna
In-person events are useful for both new or existing community members. You can meet the people you see online and create connections that support…
Recap: Docs Team Joins typo3.org Sprint Wiesbaden
Our plan was to work on documentation topics, but also take the chance of talking with typo3.org (t3o) team members about what issues we have in…
Recap: Docs Team Joins typo3.org Sprint Wiesbaden
Our plan was to work on documentation topics, but also take the chance of talking with typo3.org (t3o) team members about what issues we have in…
Recap: Docs Team Joins typo3.org Sprint Wiesbaden
Our plan was to work on documentation topics, but also take the chance of talking with typo3.org (t3o) team members about what issues we have in…
TYPO3 v9.5.7 LTS and v8.7.26 LTS released
We are announcing the release of TYPO3 v9.5.7 and TYPO3 v8.7.26.
These versions are maintenance releases and contain bug fixes only.
Please note:…
Report on the typo3.org Team Sprint in India (March 2019)
For the first time our team met in India. We were invited by NITSAN to Bhavnagar from 28-31 March.
Freelancer-Profil von Gonzalo Carvajal aus Boadilla del Monte, Full Stack Entwickler Angular Javascript - Spring Java Rest

Freelancer-Profil von Gonzalo Carvajal aus Boadilla del Monte, Full Stack Entwickler Angular Javascript - Spring Java Rest
Angular 2+, 6+, Redux, RxJS,…
T3DD 2019—Sponsor One of the Biggest TYPO3 Events of the Year
We invite you to give back to the TYPO3 project by becoming a sponsor of #t3dd19. Your support helps contributors collaborate and solve problems…
Rebooting the Content Group
To RSVP, join the #t3a-content-group in TYPO3 Slack.
Read more about the Content Group.
TYPO3-PSA-2019-008: By-passing protection of Phar Stream Wrapper Interceptor
- Release Date: May 8, 2019
- Component Type: PharStreamWrapper (package typo3/phar-stream-wrapper)
- Impact: By-passing protection against insecure…
TYPO3-PSA-2019-007: By-passing protection of Phar Stream Wrapper Interceptor
- Release Date: May 8, 2019
- Component Type: PharStreamWrapper (package typo3/phar-stream-wrapper)
- Impact: By-passing protection against insecure…
Teamleader Meeting March / April 2019
Combined Sprints
In 2019 we introduced the new format of “combined sprints”. In our meeting, we made a planning for sprints:
- Team Leader Meeting…
Teamleader Meeting March / April 2019
Combined Sprints
In 2019 we introduced the new format of “combined sprints”. In our meeting, we made a planning for sprints:
- Team Leader Meeting…
Teamleader Meeting March / April 2019
Combined Sprints
In 2019 we introduced the new format of “combined sprints”. In our meeting, we made a planning for sprints:
- Team Leader Meeting…
TYPO3 9.5.6 and 8.7.25 security releases published
The TYPO3 Community announces the versions 9.5.6 LTS and 8.7.25 LTS of the TYPO3 Enterprise Content Management System.
TYPO3-EXT-SA-2019-013: SQL Injection in extension "comsolit Suggest" (comsolit_suggest)
- Release Date: May 07, 2019
- Component Type: Third party extension. This extension is not a part of the TYPO3 default installation.
- Vulnerability…
TYPO3-EXT-SA-2019-012: Arbitrary file Upload in extension "Yet Another Gallery" (yag)
- Release Date: May 07, 2019
- Component Type: Third party extension. This extension is not a part of the TYPO3 default installation.
- Vulnerability…
TYPO3-EXT-SA-2019-011: SQL Injection in extension "Event Calender" (pits_wd_calender)
- Release Date: May 07, 2019
- Component Type: Third party extension. This extension is not a part of the TYPO3 default installation.
- Vulnerability…
TYPO3-EXT-SA-2019-010: Cross Site Scripting in extension "Instagram" (ws_instagram)
- Release Date: May 07, 2019
- Component Type: Third party extension. This extension is not a part of the TYPO3 default installation.
- Vulnerability…
TYPO3-EXT-SA-2019-009: Cross Site Scripting in extension "gkh RSS Import" (gkh_rss_import)
- Release Date: May 07, 2019
- Component Type: Third party extension. This extension is not a part of the TYPO3 default installation.
- Vulnerability…
TYPO3-EXT-SA-2019-008: Multiple vulnerabilities in extension "phpMyAdmin" (phpmyadmin)
- Release Date: May 07, 2019
- Component Type: Third party extension. This extension is not a part of the TYPO3 default installation.
- Vulnerability…
TYPO3-EXT-SA-2019-007: Remote Code Execution in extension "ImageOptimizer" (imageoptimizer)
- Release Date: May 07, 2019
- Component Type: Third party extension. This extension is not a part of the TYPO3 default installation.
- Vulnerability…
TYPO3-EXT-SA-2019-006: Open Redirect in extension "Hairu" (hairu)
- Release Date: May 07, 2019
- Component Type: Third party extension. This extension is not a part of the TYPO3 default installation.
- Vulnerability…
TYPO3-EXT-SA-2019-005: SQL Injection in extension "Faceted Search" (ke_search)
- Release Date: May 07, 2019
- Component Type: Third party extension. This extension is not a part of the TYPO3 default installation.
- Vulnerability…
TYPO3-PSA-2019-006: Security Misconfiguration since TYPO3 9.4.0
- Release Date: May 7, 2019
- Component Type: Salted Passwords (bundled in TYPO3 core package, ext:core)
- Impact: Security Misconfiguration
- Affected…
TYPO3-PSA-2019-005: Cross-Site Scripting in Bootstrap CSS toolkit before 3.4.1 and 4.3.0
- Release Date: May 7, 2019
- Component Type: Bootstrap CSS toolkit (bundled in TYPO3 core package, ext:core)
- Impact: Cross-Site Scripting, Known…
TYPO3-PSA-2019-004: Cross-Site Scripting in jQuery before 3.4.0
- Release Date: Date: May 7, 2019
- Component: jQuery (bundled in TYPO3 core package, ext:core)
- Impact: Cross-Site Scripting, Known Vulnerability
- …
TYPO3-CORE-SA-2019-013: Cross-Site Scripting in Fluid Engine
- Component Type: TYPO3 CMS
- Vulnerable subcomponent: Fluid Engine (package typo3fluid/fluid)
- Release Date: May 7, 2019
- Vulnerability Type:…
TYPO3-CORE-SA-2019-012: Possible Arbitrary Code Execution in Image Processing
- Component Type: TYPO3 CMS
- Vulnerable subcomponent: Image Processing via ImageMagick (ext:core)
- Release Date: May 7, 2019
- Vulnerability Type:…