TYPO3 Security Bulletin

Mon. 22nd December, 2008

It has been discovered that the extension WEC Discussion Forum (wec_discussion) is vulnerable to Cross-Site Scripting (XSS) and SQL injection.


This is a companion discussion topic for the original entry at https://typo3.org/article/typo3-20081222-2