just a few moments ago, version 4.0.4 of TYPO3 came out. It includes an important security fix for HTMLarea.
"An attacker could use the flaw to execute arbitrary system commands, compromising the TYPO3 installation including the database and other files on the server."
I have updated this page already to 4.0.4 and removed any local version completely from the server. One more reason not to use HTMLarea. I never liked it much... :-/
Greets,
Thomas
| M | T | W | T | F | S | S |
|---|---|---|---|---|---|---|
| « Nov | Jan » | |||||
| 1 | 2 | 3 | ||||
| 04 | 05 | 6 | 7 | 8 | 9 | 10 |
| 11 | 12 | 13 | 14 | 15 | 16 | 17 |
| 18 | 19 | 20 | 21 | 22 | 23 | 24 |
| 25 | 26 | 27 | 28 | 29 | 30 | 31 |
Thanks, Thomas. This is a big help. Some folks might need to know that when they are setting up the ...
Hi, @Andreas: I'm sure there is a solution to start Firefox directly with a profile. Even on OS ...
On Mac there's an even simpler solution: http://codecontortionist.com/software/mac-osx-software/...
Thanks a lot for your article. I'am working with linux and till now I run firefox under a different...
Hi Jonas, you have to be logged in. Open the issue you want to tag. At the end of the description, ...
#1: Stefano commented on Thursday, 21-12-06 01:47
and what RTE are you using? tinyMCE? is it already well integrated with Typo? (i don't like htmlarea either.. but it's the most featured and integrated :!