Arbitrary Code Execution in extension Job Fair (jobfair)
Dear TYPO3 users, Arbitrary Code Execution vulnerability has been found in extension Job Fair (jobfair). For further information on the issues, please read the related advisory TYPO3-EXT-SA-2015-013 which was published today: http://typo3.org/teams/security/security-bulletins/typo3-extensions/typo3-ext-sa-2015-013/ In general the TYPO3 Security Team recommends to read the following pages: The TYPO3 Security Guide: http://docs.typo3.org/typo3cms/SecurityGuide/ Make sure you are subscribed to the TYPO3 Announce List: http://lists.typo3.org/cgi-bin/mailman/listinfo/typo3-announce See all TYPO3 security advisories: http://typo3.org/teams/security/security-bulletins/ Regards, Helmut Hummel Member of the TYPO3 Security Team -- TYPO3 Security Team homepage: http://typo3.org/teams/security/ E-Mail: security@typo3.org