Security issues in third-party TYPO3 extensions

Categories: Security Created by Helmut Hummel

Security vulnerabilities have been discovered in third-party TYPO3 extensions:

direct_mail_subscription, rgsmoothgallery, th_mailformplus, ameos_dragndropupload

For further information on the issues in direct_mail_subscription, please read the related advisory TYPO3-EXT-SA-2011-007 that was published today:

https://typo3.org/security/advisory/typo3-ext-sa-2011-007/

For further information on the issues in rgsmoothgallery, please read the related advisory TYPO3-EXT-SA-2011-008 that was published today:

https://typo3.org/security/advisory/typo3-ext-sa-2011-008/

 

For further information on the issues in th_mailformplus, please read the related advisory TYPO3-EXT-SA-2011-009 that was published today:
https://typo3.org/security/advisory/typo3-ext-sa-2011-009/

For further information on the issues in ameos_dragndropupload, please read the related advisory TYPO3-EXT-SA-2011-010 that was published today
:https://typo3.org/security/advisory/typo3-ext-sa-2011-010/

In general the TYPO3 Security Team recommends to read the following pages: