London calling — employees from the TYPO3 GmbH head to the UK
As part of a wider initiative to promote TYPO3 in the UK, CMS ambassador Tom Warwick and colleagues participated in two conferences in central London…
TYPO3 12.4.13 maintenance release published
The version 12.4.13 of the TYPO3 Enterprise Content Management System has just been released.
Community Budget Idea Report: Implementing TYPO3 Rector Rules
For many years I've been one of the developers of TYPO3 Rector. When I heard about the call for funds for community projects at the end of last year,…
Annual Report of the TYPO3 UX Team — 2023
The UX Team helps to improve and maintain the TYPO3 User Experience. The main goal of this team is to work on UX improvements for TYPO3 existing…
Important Update: New Dates for T3CON24
TYPO3 Conference 2024 will be held between Tuesday 26th and Thursday 28th November 2024. The TYPO3 Award Ceremony will be held on the closing night of…
TYPO3 12.4.12 maintenance release published
The version 12.4.12 of the TYPO3 Enterprise Content Management System has just been released.
Full Power Ahead – A Recap of the first TYPO3 Marketing Team Sprint in 2024
In the heart of Düsseldorf, at the TYPO3 GmbH Headquarters, the TYPO3 Marketing Team convened for their first in-person sprint of the year from 6 - 7…
Budget 2024 Ideas for Quarter 2/2024 Published — Vote Now!
The call for community budget ideas for the second quarter of 2024 was successful: 17 of 19 ideas have made it to the poll. The ideas can now be…
Report From the Best Practices Team (2023)
The Best Practices Team has a productive and enjoyable 2023, and look forward to more events, new team members and facing new challenges in 2024.…
Initial Phase of the ACL Enhancement Initiative
Work has begun on the access control list (ACL) enhancement initiative, with analysis and research phases complete, we now have an initial set of…
Being TYPO3 at CMS Kickoff 2024
TYPO3 continues its mission to network with other CMS vendors and the broader content management realm. In January 2024, I ventured over the pond to…
Openness and Exceptional Eye Contact: Wolfgang Fiebig on the Unique Spirit of the TYPO3 Community
As we embrace 2024 and its upcoming events, we're excited to share something a little different with our community. Meet Wolfgang Fiebig, facilitator,…
Ticket Sale for TYPO3 Developer Days 2024 is now open!
Join one of the most anticipated events in the TYPO3 community. Please note that early bird tickets will be available until March 22, or until sold…
Turbo Boost Your TYPO3 Site to a Digital Experience Platform — Talent Management Edition
TYPO3 can be more than a content management system. The SkillDisplay extension can turn it into a skill management platform, both for agencies and…
TYPO3 11.5.36 maintenance release published
The version 11.5.36 of the TYPO3 Enterprise Content Management System has just been released.
Report From the EMPAMOS Barcamp and Networking Event in Nuremberg 2023
In November 2023, two members of the TYPO3 Motivation Research Team attended the EMPAMOS barcamp event to connect with others and learn more about the…
Report From The Content Types Team
The Content Types Team has had a productive couple of months. We showcased the Content Blocks extension at TYPO3camp RheinRuhr, and received valuable…
TYPO3-EXT-SA-2024-001: Broken Access Control in extension "Event management and registration" (sf_event_mgt)
It has been discovered that the extension "Event management and registration" (sf_event_mgt) is susceptible to Broken Access Control.
TYPO3-CORE-SA-2024-006: Improper Access Control Persisting File Abstraction Layer Entities via Data Handler
It has been discovered that TYPO3 CMS is susceptible to information disclosure.
TYPO3-CORE-SA-2024-005: Improper Access Control of Resources Referenced by t3:// URI Scheme
It has been discovered that TYPO3 CMS is susceptible to information disclosure.
TYPO3-CORE-SA-2024-004: Information Disclosure of Encryption Key in TYPO3 Install Tool
It has been discovered that TYPO3 CMS is susceptible to information disclosure.
TYPO3-CORE-SA-2024-003: Information Disclosure of Hashed Passwords in TYPO3 Backend Forms
It has been discovered that TYPO3 CMS is susceptible to information disclosure.
TYPO3-CORE-SA-2024-002: Code Execution in TYPO3 Install Tool
It has been discovered that TYPO3 CMS is vulnerable to code execution.
TYPO3-CORE-SA-2024-001: Path Traversal in TYPO3 File Abstraction Layer Storages
It has been discovered that TYPO3 CMS is susceptible to path traversal.