Cross-site scripting (XSS) vulnerability in the UserTask Center, Messaging (sys_messages) extension 1.1.0 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.Referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/81584http://typo3.org/teams/security/security-bulletins/typo3-extensions/typo3-ext-sa-2013-002/