(:A security bypass vulnerability was reported in the Anti-XSS functionnality of TYPO3.:A remote attacker could exploit it by using unfiltered characters in order to conduct cross-site scripting (XSS) attacks.::This vulnerability is due to the fact that the functionality "RemoveXSS.php" is based on the blacklist method which can be circumvented.::A proof of concept is available.)