[Typo3-dev] Re: [Typo3] SQL Injection - READ THIS PLEASE.

Peter Russ peter.russ at 4many.net
Fri Mar 4 10:55:17 CET 2005


Ekkehard Gümbel schrieb:
> Hi everybody,
> I am writing this as a preliminary statement from the TYPO3 security team.
> 
> The issue has been discussed there yesterday, we are in contact with the 
> author of the faulty extension, a fix will be available today.
> 
> Also, there will be an Security Announcement on typo3.org on this matter.
> That announcement will also be published on the typo3-announce mailing 
> list, so in general, everybody is strongly adviced to subscribe to that 
> (low-volume + moderated) list!
> 
> BTW: The general means for reporting presumed security isues to us will 
> be improved shortly anyway, that has been prepared since Kitzbühel.
> 
> --> For now, please stop this public discussion ! <--
> Everybody is welcome to volunteer in the security team, though :-)
> 
> Thanks
> /Ekki
[...]

Highly appreciate that security team is now open for volunteers as some 
weeks ago the reaction was "please wait". How to help and where?

Regs. Peter.
_____________________________
4Many Services
http://www.4many.net              http://www.4dfx.de

Kundenserver/Customer server
http://www.typo3-server.net




More information about the TYPO3-dev mailing list