All page names need to be in English.
en da  de  fr  it  ja  km  nl  ru  zh

TYPO3 CMS 8.2.1

From TYPO3Wiki
Jump to: navigation, search

<< Back to Administrators page


Release Notes for TYPO3 CMS 8.2.1

This document contains information about TYPO3 CMS 8.2.1 which was released on July 19th, 2016.


This release is a combined bug fix and security release.


Find more details in the security bulletins:


MD5 checksums

ec8750cc451c0fffbf1f1a377ddd997b  typo3_src-8.2.1.tar.gz

SHA256 checksums

812e91130afdc8fe367ebcaf3294b535b8ab20127c1c7279e6fb2a54707b0e91  typo3_src-8.2.1.tar.gz


The usual upgrading procedure applies. No database updates are necessary.
It might be required to clear all caches; the "important actions" section in the TYPO3 Install Tool offers the accordant possibility to do so.


Here is a list of what was fixed since 8.2.0:

2ecfc86 [RELEASE] Release of TYPO3 8.2.1
c51d635 [SECURITY] Link fields accept Javascript code when using URI Data Scheme
fcd52bc [SECURITY] Prevent persistent username in filesystem
22f1b23 [SECURITY][FEATURE] Disable import module for non admin users
6a09d62 [SECURITY] Prevent XSS in IRRE elements
bd8eded [SECURITY] Escape the link text in EmailViewHelper
8c5a99c [SECURITY] Prevent XSS in ContentObjectRenderer
e0fcf4d [SECURITY] Update guzzle to fix CVE-2016-5385
410ce53 [BUGFIX] Flaky references in TypoScript parsing

Past Release Notes

If you have skipped one or more versions while upgrading to this version, please make sure to read the ReleaseNotes of these versions as well.