CVE-2012-1073
Cross-site scripting (XSS) vulnerability in the Category-System (toi_category) extension 0.6.0 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Date published : 2012-02-14
http://www.securityfocus.com/bid/51834
http://typo3.org/teams/security/security-bulletins/typo3-extensions/typo3-ext-sa-2012-001/