-
TYPO3-EXT-SA-2019-006: Open Redirect in extension "Hairu" (hairu)
Categories: DevelopmentAdvisory type: TYPO3 ExtensionsRead moreIt has been discovered that the extension "Hairu" (hairu) is susceptible to an Open Redirect.
-
TYPO3-EXT-SA-2019-005: SQL Injection in extension "Faceted Search" (ke_search)
Categories: DevelopmentAdvisory type: TYPO3 ExtensionsRead moreIt has been discovered that the extension "Faceted Search" (ke_search) is susceptible to SQL Injection.
-
TYPO3-PSA-2019-006: Security Misconfiguration since TYPO3 9.4.0
Categories: DevelopmentAdvisory type: Public Service AnnouncementsRead moreIt has been discovered that TYPO3 is susceptible to security misconfiguration.
-
TYPO3-PSA-2019-005: Cross-Site Scripting in Bootstrap CSS toolkit before 3.4.1 and 4.3.0
Categories: DevelopmentAdvisory type: Public Service AnnouncementsRead moreIt has been discovered that 3rd party library Bootstrap CSS toolkit bundled with TYPO3 is vulnerable to cross-site scripting through prototype…
-
TYPO3-PSA-2019-004: Cross-Site Scripting in jQuery before 3.4.0
Categories: DevelopmentAdvisory type: Public Service AnnouncementsRead moreIt has been discovered that 3rd party library jQuery bundled with TYPO3 is vulnerable to cross-site scripting through prototype pollution.
-
TYPO3-CORE-SA-2019-013: Cross-Site Scripting in Fluid Engine
Categories: DevelopmentAdvisory type: TYPO3 CMSRead moreIt has been discovered, that TYPO3 CMS is vulnerable to cross-site scripting.
-
TYPO3-CORE-SA-2019-012: Possible Arbitrary Code Execution in Image Processing
Categories: DevelopmentAdvisory type: TYPO3 CMSRead moreIt has been discovered, that TYPO3 CMS is vulnerable to arbitrary code execution.
-
TYPO3-CORE-SA-2019-011: Security Misconfiguration in User Session Handling
Categories: DevelopmentAdvisory type: TYPO3 CMSRead moreIt has been discovered, that TYPO3 CMS is susceptible to security misconfiguration.
-
TYPO3-CORE-SA-2019-010: Information Disclosure in User Authentication
Categories: DevelopmentAdvisory type: TYPO3 CMSRead moreIt has been discovered, that TYPO3 CMS is susceptible to information disclosure.
-
TYPO3-CORE-SA-2019-009: Information Disclosure in Page Tree
Categories: DevelopmentAdvisory type: TYPO3 CMSRead moreIt has been discovered, that TYPO3 CMS is susceptible to information disclosure.