Събота, 24 Април 2010 20:59
Изелзе Джумла 1.5.16, оправяща сериозен проблем със сигурността.
"Session id doesn't get modified when user logs in. A remote site may be able to forward a visitor to the Joomla! site and set a specific cookie. If the user then logs in, the remote site can use that cookie to authenticate as that user."
Изтегляне на Joomla! 1.5.16
Изтегляне на ъпдейт 1.5.15 -> 1.5.16 (очаква се скоро, до тогава следвайте инструкциите за обновяване, архивирайте сайтовете си преди това)
Вижте цялата статия за останалите промени
Components
- Fixed error in contacts with SEF enabled (17235)
- Fixed SQL error when sorting news feeds by section. (18648)
- Fixed problem showing URL for image files in Atom news feeds. (18936)
- Fixed problem where author alias was not escaped correctly. (19009)
- Fixed bug in pagination of category blog menu item. (19245)
- Fixed display of image captions in some situations. (19405)
- Fixed caching problem with com_contact. (19435)
- Added framework validation to com_media file. (19763)
- Fixed PHP notice when enabling or disabling a user. (19798)
Modules
- Fixed caching for related articles module (17000)
- Fixed notification error in login module (17762)
- Fixed problems with upgrade method in module installation (17878)
- Fixed typo in mod_latestnews. (18403)
- Fixed HTML validation problem with mod_search. (18619)
- Fixed problem with some news feeds not showing. (18672)
- Fixed problem in mod_login where trashed menu items show in redirect list. (19831)
Plugins
- Fixed problem saving content in TinyMCE when editor is toggled (17936)
- Fixed bug in email cloaking that added an extra space (17986)
- Fixed problem saving valid attributes for some HTML tags. (19055)
Legacy
- No legacy issues were fixed for this release
Templates
- Fixed problem loading template files for RTL languages. (18614)
- Fixed beez template to show correct Itemid after a search. (18683)
Language
- Added missing translation strings in installation. (19604)
- Added sr-YU language for installation. (19627)
- Added Phnom-Penh to timezone files. (19715)
- Added missing language strings in installation files. (19816)
- Added Arabic Unitag installation language ar_AA (19836)
- Added missing language strings for is-IS language in installation. (19864)
- Added missing strings in installation ini files. (19871)
- Added new hi-IN install language (19966)
- Added updates on installation ini files (20024)
- Fixed language bug in Menus (20055)
- Added language credits update (20195)
Administrator
- Fixed display problem in back end with RTL languages. (18570)
- Fixed problem where Menu Item types for disabled components still showed when adding menu items. (18617)
- Fixed problem with display of module position in Module Manager. (18848)
System
- Fixed JFolder::makeSafe method to not remove dots in path (16506)
- Fixed problem that prevented using a cache in some cases (16974)
- Remove PHP warning message on some versions (18612)
- Fixed problem installing modules in update mode. (18987)
- Fixed problem with Yagoon and Norfolk timezones. (19555)
- Fixed problem with return value when saving polling components. (19655)
- Fixed problem in JToolbarHelper class media_manager method. (19680)
- Fixed incorrect URI for IIS platforms (18046)
- Improved handling of failing Apache plugins (19859)
- Added Reykjavik in timezone (20025)
- Fixed JApplication::redirect() to not use 301 code (20043)
- Fixed SEF search URL's for cross-platform compatibility (20184)
Добави коментар