[TYPO3-announce] Announcing TYPO3 Public Service Announcements

oliver.hader at typo3.org oliver.hader at typo3.org
Tue May 7 13:45:53 CEST 2019


Dear TYPO3 World,

the TYPO3 Security Team has just released the following Public Service Announcements:


1) Cross-Site Scripting in jQuery before 3.4.0

https://typo3.org/security/advisory/typo3-psa-2019-004/

2) Cross-Site Scripting in Bootstrap CSS toolkit before 3.4.1 and 4.3.0

https://typo3.org/security/advisory/typo3-psa-2019-005/

3) Security Misconfiguration since TYPO3 9.4.0

https://typo3.org/security/advisory/typo3-psa-2019-006/


Find all TYPO3 security advisories here:
https://typo3.org/help/security-advisories/


Best regards
Oliver Hader
--
Oliver Hader

TYPO3 .... inspiring people to share!
Get involved: http://typo3.org

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: Message signed with OpenPGP
URL: <http://lists.typo3.org/pipermail/typo3-announce/attachments/20190507/721e5a21/attachment.pgp>


More information about the TYPO3-announce mailing list