NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
Packagist · #4159 most downloaded on Packagist
Powermail is a well-known, editor-friendly, powerful and easy to use mailform extension for TYPO3 with a lots of features
Last release 29 days ago
09 Sep 2026
Release timing varies
gaps range from 1 weeks to 6 months
Rarely documented
notes for 13 of the last 60 stable releases
Nothing withdrawn
no release was ever pulled
10 years old
158 releases · first in 2016
Nothing published for this version
Security fix - please update ASAP
Security fix - please update ASAP
This release contains two security fixes.
It was possible to use arbitrary viewhelpers in frontend files, like sender name or sender email. This is now prevented via a whitelist in the extension configuration. If you use other viewhelpers, you need to whitelist them in the extension configuration.
With non numeric uid values, it was possible to gain access to mails on pages where an editor had no access to. This is now mitigated via an additional access check.
Nothing published for this version
One column per quarter.
[TASK] Remove deprecated TCA internal_type by @ErHaWeb in #1309
internal_type by @ErHaWeb in #1309Full Changelog: 13.0.4...13.1.0
[TASK] Align length of receiver mail database field and flexform by @mschwemer in #1279
Full Changelog: 13.0.3...13.0.4
[BUGFIX] fix site set settings definitions for view settings by @bahammes in #1254
Full Changelog: 13.0.2...13.0.3
Full Changelog : 13.0.1...13.0.2
Full Changelog: 13.0.1...13.0.2
This release fixes an issue in the backend, where it was possible to download files from the server, to which an editor did not have proper access per
This release fixes an issue in the backend, where it was possible to download files from the server, to which an editor did not have proper access permissions.
Full Changelog: 13.0.0...13.0.1
improve accessibility of fe forms
Full Changelog: 12.5.2...13.0.0
Security fix - please update ASAP
Security fix - please update ASAP
This release contains two security fixes.
It was possible to use arbitrary viewhelpers in frontend files, like sender name or sender email. This is now prevented via a whitelist in the extension configuration. If you use other viewhelpers, you need to whitelist them in the extension configuration.
With non numeric uid values, it was possible to gain access to mails on pages where an editor had no access to. This is now mitigated via an additional access check.
Update PreventDuplicates.md by @eyeworkers-gmbh in #1305
Full Changelog: 12.5.4...12.6.0
[FEATURE] Count "www"-prefixed words as link in spam-checker by @rr-it in #1193
Full Changelog: 12.5.3...12.5.4
This release fixes an issue in the backend, where it was possible to download files from the server, to which an editor did not have proper access per
This release fixes an issue in the backend, where it was possible to download files from the server, to which an editor did not have proper access permissions.
Full Changelog: 12.5.2...12.5.3
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Security fix - please update ASAP
Security fix - please update ASAP
This release contains two security fixes.
It was possible to use arbitrary viewhelpers in frontend files, like sender name or sender email. This is now prevented via a whitelist in the extension configuration. If you use other viewhelpers, you need to whitelist them in the extension configuration.
With non numeric uid values, it was possible to gain access to mails on pages where an editor had no access to. This is now mitigated via an additional access check.
Full Changelog: 10.9.2...10.9.3
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →