TYPO3-CORE-SA-2013-001: SQL Injection and Open Redirection in TYPO3 Core
March 06, 2013
It has been discovered that TYPO3 Core is susceptible to SQL Injection and Open Redirection
DetailsMarch 06, 2013
It has been discovered that TYPO3 Core is susceptible to SQL Injection and Open Redirection
DetailsFebruary 19, 2013
Several vulnerabilities have been found in the following third-party TYPO3 extensions: fed, myquizpoll, push2rss_3ds, slideshare, wec_discussion
DetailsFebruary 19, 2013
It has been discovered that the extension "Static Info Tables" (static_info_tables) is vulnerable to Cross-Site Scripting.
DetailsFebruary 19, 2013
It has been discovered that the extension "CoolURI" (cooluri) is vulnerable to SQL Injection.
DetailsJanuary 28, 2013
Several vulnerabilities have been found in the following third-party TYPO3 extensions: attacalendar, attacpetition, eu_subscribe, exinit_job_offer, fefilebrowser, js_css_optimizer, kk_csv2table, lonewsseo, mn_mysql2json, news_search, tipafriend_plus, twitter_auth, sofortueberweisung2commerce, ...
DetailsJanuary 11, 2013
Several vulnerabilities have been found in the following third-party TYPO3 extensions: news, onetimeaccount, phpunit, div2007, t3mootools, t3jquery, oneclicklogin
DetailsDecember 21, 2012
It has been discovered that the extension commerce (commerce) is vulnerable to Cross Site Scripting.
DetailsNovember 08, 2012
It has been discovered that TYPO3 Core is vulnerable to SQL Injection, Information Disclosure and Cross-Site Scripting
DetailsOctober 25, 2012
It has been discovered that the extension Formhandler (formhandler) is vulnerable to SQL-Injection and Cross-Site Scripting.
DetailsAugust 15, 2012
It has been discovered that TYPO3 Core is vulnerable to Cross-Site Scripting, Information Disclosure, Insecure Unserialize leading to Arbitrary Code Execution
Details