ÿØÿà JFIF ÿÛ „ ( %!1!%*+...983,7(-.-
var/softaculous/elgg/changelog.txt 0000755 00000003005 15234330533 0013313 0 ustar 00 1.12.18 (2019-04-03)
Contributors
Jyoti Raval (1)
Wouter van Os (1)
Bug Fixes
core: revert original libxml_use_internal_errors value after use (bc30e941)
1.12.17 (2017-09-21)
Contributors
Jerôme Bakker (3)
Brett Profitt (1)
Steve Clay (1)
Bug Fixes
likes: listing limit no longer breaks likes counts (abbe2715, closes #11160)
1.12.16 (2017-05-10)
Contributors
Steve Clay (3)
iionly (2)
Jerôme Bakker (1)
Documentation
admin: start upgrade by logging in/clearing caches (cf78468a, closes #10898)
Bug Fixes
groups: remove membership request when user is already member (4f158e1d)
htaccess: removing of obsolete entry in htaccess.dist incompatible with Apache 2.4 (f2e8efab)
search:
no longer fatals if comment container hidden (16a753a9, closes #10902)
allows get_sql, access hook to be used correctly (98835bc4, closes #10884)
1.12.15 (2017-01-25)
Contributors
Johnny Mast (1)
jdalsem (1)
Bug Fixes
views: corrected syntax error in input/date (a7277f30)
1.12.14 (2016-11-08)
Contributors
Jerôme Bakker (3)
Ismayil Khayredinov (1)
Steve Clay (1)
Bug Fixes
core:
outgoing email should have a message-id header (9953687f)
_elgg_send_email_notification respects other email handlers (80bd413d)
elgg_get_page_owner_entity will return ElggEntity (9f8e8dda)
register: consistent forwarding upon login (a62410dd)
relationships: ElggRelationship::save returns the ID (25754c76, closes #10373)
var/softaculous/flatboard/changelog.txt 0000755 00000011531 15234330654 0014342 0 ustar 00 Version 4.0 - 2025-11-29
Performance Optimizations
Database Query Optimization: Implemented static caching for flatDB::readEntry() and flatDB::listEntry() to reduce redundant file system operations
N+1 Query Fixes: Eliminated N+1 query problems in feed.php, view.php, search.php, and other core files
Parser Optimization: Added static cache for Parser::title() and optimized Parser::content() and Parser::summary()
Plugin System: Implemented static caching for plugin configurations and hook validations
BBCode/BBlight Optimization: Added static cache for quote entries to prevent repeated database reads
User Management: Implemented static cache for ban list with 60-second TTL
Search Enhancement: Optimized search functionality with relevance scoring, result limiting, and content preview optimization
Library Improvements
flatDB Library: Added static caching system with automatic invalidation (5-second TTL)
Plugin Library: Added cache for hook validation checks
HTMLForm Library: Added cache for description sanitization
GlobalRequestLimiter: Fixed potential undefined variable error
RSS Feed Fixes
Fixed RSS feed redirection issue - now returns valid Atom XML error feed instead of redirecting
Improved date validation in feed generation
Optimized topic caching in feed.php
Date Formatting
Fixed date formatting issues with strftime codes
Added convertStrftimeToDateTime() function for proper format code conversion
Enhanced config.php with select dropdowns for date format presets
Added "Custom" option with dynamic text input for date formats
Security Enhancements
Ban System Overhaul:
[list]
Replaced strpos() with ipInCidr() for accurate IP/CIDR range checking
Added isValidIpOrCidr() for robust IP and CIDR validation (IPv4/IPv6)
Improved ban list management with search, sort, and add functionality
Added confirmation for ban removal
Implemented static cache for ban list with automatic invalidation
[*] CSRF Protection: Enhanced CSRF token generation and validation
[*] Input Sanitization: Improved HTML sanitization in help descriptions with whitelist-based approach
[*] IP Validation: Enhanced IP address validation including CIDR support
[/list]
User Interface Improvements
Added logout button to frontend header for all logged-in users
Tags field now only displays if visible tags are configured
Improved responsive design for various screen sizes
Enhanced form validation and error display
Plugin Enhancements
Identicon Plugin (v3.6.0):
[list]
Added configurable options for status dot (online/offline) display
Added configurable options for role badge (admin/moderator) display
Improved caching for online status checks
Enhanced role detection with optimized caching
Fixed CSS positioning for status dots and badges
[*] Online Plugin:
Implemented static caching for plugin data, hits, and authenticated users
Optimized cleanup of inactive IPs and authenticated users
Added configuration options for timeout and max_entries
Enhanced modal to display authenticated users, visitors, and bots
Improved IPv6 masking for privacy
Added crawler detection with static caching
[*] FlatBBeditor Plugin:
Fixed conflicts with TinyMCE editor in page plugin
Added conditional loading to prevent conflicts
Fixed undefined array key warnings in markdown editor
Implemented static cache for plugin data
[*] Darkmode Plugin:
Fixed Firefox crashing issues
Added color format validation
Improved error handling and initialization
Added static caching for plugin configuration
[*] Page Plugin:
Ensured TinyMCE editor doesn't conflict with FlatBBeditor
Added proper content field handling
Improved translation support
[/list]
Content Parsing Improvements
Markdown Editor:
[list]
Fixed HTML tag display issue in homepage summaries
Added HTML-to-Markdown conversion for pre-existing HTML content
Improved content parsing in Parser::content() and Parser::summary()
[*] BBCode Processing: Optimized quote processing with static caching
[/list]
JavaScript Enhancements
Improved plugin activation/deactivation with better error handling
Added comprehensive AJAX error handling with timeouts
Enhanced UI feedback for user actions
Fixed TypeError issues in flatboard.js
[h2]Bug Fixes[/h2]
Fixed white page error in identicon plugin
Fixed undefined array key warnings in multiple files
Fixed date formatting display issues
Fixed search functionality optimization
Fixed tag display logic in forms
Fixed various PHP warnings and notices
Code Quality
Improved error handling throughout the application
Added comprehensive logging for debugging
Enhanced code documentation
Improved code organization and structure var/softaculous/extplorer/changelog.txt 0000755 00000001535 15234330716 0014432 0 ustar 00 ****************************
Changelog for eXtplorer
Version $Id: CHANGELOG.txt 249 2016-12-11 16:11:03Z soeren $
****************************
--- version 2.1.15 ---
- fixed a critical security issue reported by shimmeris
- PHP 8 compatibility
--- version 2.1.14 ---
- fixed various security issues reported by Sander Bos:
- fixed deprecated warnings on PHP 7.4
--- version 2.1.13 ---
- fixed various security issues reported by Mario Korth:
* potential XSS
* Arbitrary file read
* Path traversal in listing directory contents
* Path traversal in archive feature
- added new turkish translations
--- version 2.1.12 ---
- fixed wrong version display
- fixed empty language selector
--- version 2.1.11 ---
- fixed "text.js not found" message on server when editing text files
- fixed PHP 7.2 incompatibility in Tar.php
- PHP 5.3 compatibility fixes
var/softaculous/ostic/changelog.txt 0000644 00000001545 15234336361 0013527 0 ustar 00 osTicket v1.18.4
Security
security: Latest Patches 06/2026 (52c366f, 5afdf54, c54a6ac, 1e39bf1, feccb6a, 6eb6b98, 078516e, 98abb05, e52e010, fd96bba, 7bbd8ab, ba6217a, 580e1c8, b535782, 5963797, d590a97, eaebe01, b4cc092, d457c14, 5600f94, 5ff9795, 119cefe, b4ede88, 2a0c388, 6558b33)
osTicket v1.18.3
Enhancements
mPDF: Upgrade To v8.2.7 (39cdd2b)
htmLawed: Upgrade To 1.2.15 (877adf5)
Security
security: Latest Patches 01/2026 (c646c8c, d1b634a, 6852e71, 8db4d37, 1552cfa, d832f24)
osTicket v1.18.2
Improvements
OAuth2: Show Scopes and Enforce Strict Mode (a77cf535, 390555db)
osTicket v1.18.1
Improvements
Update upgrade.php (9fd83eba)
Update upgrade.inc.php (8c8a7fd1)
update: PHP Requirements 1.18.x (1c0c670b)
CLI: Make sure manage util can be executed via CLI (0caf5864)
Update raphael-min.js to 2.3.0 (d4aeada1) var/softaculous/maian/changelog.txt 0000755 00000025634 15234342275 0013504 0 ustar 00 Version 5.0 (01 Feb 2025):
-----------------------------------
[+] Added Support For Nette Utils (4.0.5)
[+] Added official support for PHP8.3 & 8.4
[+] Added wysiwyg editor formatting to admin mailbox
[+] Added Improvements to CSRF tokens
[+] Added Support For Latte PHP Template Engine (3.0.20)
[*] Script docs updated, broken links updated or removed
[*] Updated PHPmailer Email Sending Library (6.9.3)
[*] Updated Nette Tracy PHP debugging system (2.10.9)
[*] Updated Trumbowyg WYSIWYG editor (2.27.3)
[*] Updated Bootbox JS plugin (6.0)
[*] Updated min PHP version to v8.0
[*] Updated Mobile Detection Class (4.8.09)
[*] Removed backup cron job, you should backup your servers db with rsync
[*] Removed BBCode legacy support & BBCode support
[*] Removed Savant3 PHP Template Engine
[-] Fixed single attachment issue for the create tickets API
[-] Fixed prismjs css formatting in html emails
[-] Fixed incorrect message if voting system was not enabled
Version 4.6 (15 Oct 2023):
-----------------------------------
[*] Update trumbowyg jquery plugin (2.27.3)
[*] Updated Mobile Detection Class (3.74.0)
[*] Updated jQuery javascript library (3.7.0)
[*] Updated Savant3 template engine for PHP8.2 compatibility with non-declared dynamic properties. Savant3 will be removed in a future version of this software.
[*] Updated Nette Tracy PHP debugging system (2.10.2)
[*] Added official support for PHP8.2
[*] Updated PHPMailer email sending library (6.8.1)
[-] Fixed admin CP bug that prevented ticket data from being deleted if an account was deleted
[-] Fixed auto save ticket draft system from repeated SQL save queries if the data had not changed. Now only saves on change.
[-] Fixed non adminstrator account permissions when searching by custom ticket fields if permission was allowed
[-] Fixed non adminstrator account permissions when viewing account history and account edit screen if permission was allowed
Version 4.5 (26/06/2022):
[*] Updated PHPMailer to latest stable release (6.6.3)
[-] Fixed attachment downloads for visitor portal tickets (thanks Evrim)
[-] Fixed issue with undefined class errors with Tracy debugger
[-] Upgrade routine bug fixes and improvements
Version 4.4 (17/04/2022):
[+] Added basic captcha as an alternative to the CleanTalk anti spam system
[+] Added batch ops to all ticket list screens for faster processing
[+] Added official support for PHP8.0* & PHP8.1*
[+] Added option to enable/disable if visitor can close tickets
[+] Added option to hide IP addresses on ticket view screens (control/options.php). Can be hidden for accounts, admin or both.
[+] Added option to move ticket/dispute from one account to another in the admin CP. Requires move privileges for none admins.
[+] Added option to send email notification if support staff close or open tickets
[+] Added option to set custom prefix for random ticket numbers
[+] Added option to specify whether 'Write Ticket History' box on ticket screens for admins is auto checked by default
[+] Added support for Wysiwyg editor. Legacy version posts fall back to BB code if Wysiwyg enabled.
[+] Added year switcher for admin dashboard graph to see stats for selected years
[+] Added {subject} variable for email language vars related to tickets. Parses as ticket subject.
[+] In admin CP added staff option to auto set status on ticket reply page. Useful if a custom status is always needed after a staff reply.
[+] Update for admin CP ticket / reply edit screens. Attachments can now be added to original ticket message and ticket replies in admin CP
[+] Visitor notes can now be edited directly from the ticket view screens
[*] Added Nette Tracy PHP debugging system for better error reporting and exception handling (2.9.1)
[*] Admin cookie option can now easily be switched off in the 'control/options.php' file
[*] Import and export routines now use the system temporary folder. This is auto cleared by the garbage collector and is used for better performance.
[*] Improvements to HTML emails when reading via imap. If detected, only data between the body tags is parsed.
[*] In Admin CP, entry logs and work timers can now be individually disabled for admins, not just other support staff
[*] In admin CP mail settings moved to individual page for easier access
[*] In admin CP when ticket is added, redirect screen is now view screen, not edit screen. This can be reverted back if required.
[*] Main portal updated to include FAQ and pages on portal homescreen
[*] Security enhancement. Backup folder path must explicitly be set in admin CP now for security.
[*] Security improvements and enhancements.
[*] Update to admin ticket reply screens. Attachments are now visible here same as ticket edit screens.
[*] Updated API to return comma delimited list of IDs when multiple accounts or tickets are added
[*] Updated Bootstrap library (3.4.1)
[*] Updated Mobile Detection Class (2.8.39)
[*] Updated PHPMailer to latest stable release (6.6.0)
[*] Updated jQuery javascript library (3.6.0)
[-] Fixed Cross-Site Request Forgery vulnerability in first 4.3 branch (March 2020). Thanks to Besim Altinok.
[-] Fixed MySQL autoenable date issue for MySQL servers running in STRICT mode that disallow 0000-00-00 date fields.
[-] Fixed MySQL error when dispute was locked by an admin user and another admin user viewed the same dispute
[-] Fixed MySQL issue where integers were stripped from integer only queries when processing multi byte characters on older versions of MySQL
[-] Fixed MySQL join issue that resulted in ticket search returning a zero result set on some servers
[-] Fixed admin CP search tickets/custom fields bug that threw a database error when searching a date range
[-] Fixed attachments limit bug that meant unlimited attachments could be uploaded
[-] Fixed bug where ticket assign count on admin dashboard and overview window was incorrect for tickets with a custom status
[-] Fixed bug where user setting "On Login, Go to Mailbox if at least 1 Unread Message in Inbox" didn't work.
[-] Fixed entry log filters in admin CP, which always showed all login events
[-] Fixed fatal error which occurred during account validation
[-] Fixed issue where attachment options were still displayed even if they were disabled on admin reply screen
[-] Fixed issue where new names for Open, Closed and Locked tickets under ticket statuses was not correctly displayed on certain admin pages and ops
[-] Fixed mail template path issue for ticket replies during imap (Tickets by Email) routines
[-] Fixed read folders issue with imap when SSL was enabled causing mailbox to not connect
[-] Fixed undefined logging error for imap (Tickets by Email) feature
Version 4.3 (09/03/2020):
[+] Added draft option to ticket creation and reply screens. Draft is saved for textarea to help prevent loss of data.
[+] Added option to add custom admin pages. Useful for backend information in a secure area. Can be restricted to team members.
[+] Added option to add custom ticket statuses besides Open, Closed and Locked.
[+] Added option to disable spam notifications for admin support team. Useful if you prefer to check manually from time to time.
[+] Added option to spam settings to disable accounts when tickets are moved to spam. This prevents further tickets from being opened via email.
[+] Added optional custom email response for new tickets. You can now send a custom message when tickets are opened. Configurable per department.
[+] Added support for PHP7.4
[+] Added support for the server spam score headers (eg: SpamAssassin) to help detect spam tickets for the Tickets by Email option. This does not require CleanTalk to be enabled.
[+] In admin CP added F.A.Q history to question edit screen. Shows staff edit history. Optional.
[+] In admin CP added confirmation to check mail option on imap list screen
[+] In admin CP added one click view option for image type FAQ attachments
[+] In admin CP added option for admin staff to send update notifications to other staff when ticket replies are added
[+] In admin CP added option on assign tickets page to send update notification to visitors
[+] In admin CP added quick links to confirmation message popups for quicker access
[+] In admin CP on ticket view screen, one click delete options added to custom fields for quicker removal.
[+] In admin CP you can now re-order the main off canvas menu. Options you don't need can also be hidden.
[+] In admin CP, Move to Spam option added to ticket edit screen besides list screens.
[+] In admin CP, added 'Show All' option to show filters on all list screens
[+] Updated email digest for day restrictions for staff. Email can be sent on specific days.
[+] Updated email digest. You can now specify which emails are to be sent in emails.
[*] Department auto subject/comments/priority can now be enabled for admin tickets. Edit department to enable/disable.
[*] Improvements to imap routines for tickets with invalid data which caused crashes
[*] Improvements to sessions and session handling for enhanced security
[*] In admin CP, custom field and attachment deletions are now written to the ticket history
[*] Tickets opened by email for accounts disabled are now not permitted.
[*] Updated PHPMailer to latest stable release (6.1.4)
[*] Updated and revised all document screenshots
[*] Updated imap routines to check for emails from staff accounts which would previously open new tickets. If detected, email is ignored as staff replies should come from the admin interface only.
[*] Updated jQuery library (3.4.1)
[*] Updated the "Send Notification to Admin When New Account is Created Manually" setting. Notification is now sent to all admins.
[*] You can now attach custom fields to individual accounts. Useful for getting specific information from certain accounts. Read the docs about this before use.
[*] Removed ticket reply status. Tickets are now simply open, closed, locked or have a custom status.
[-] Fixed BB code help page in admin that showed the same display for all list types
[-] Fixed account ticket history filters in admin CP which didn't work
[-] Fixed admin mailbox bug where Empty Bin button didn't display if inbox was empty
[-] Fixed case sensitivity issue with SSL ciphers when decoding licence files.
[-] Fixed export ticket history to CSV, which failed due to invalid parameter
[-] Fixed fatal error that occurred when an account was added by admin with the password left blank.
[-] Fixed http protocol issues for servers using ModSecurity that caused settings to not update
[-] Fixed issue where admins didn`t receive ticket reply emails if ticket assign was used
[-] Fixed issue where private categories didn`t display if no account filters were set
[-] Fixed issue with auto close cron job emails that included the standard ticket number even if random tickets were used
[-] Fixed several language bugs related to multiple languages where email templates weren't correctly loaded for the set language. Mainly applied to support staff. var/softaculous/typo47/changelog.txt 0000755 00000014645 15234342521 0013557 0 ustar 00 2017-04-18 ac75a78 [RELEASE] Release of TYPO3 6.2.31 (TYPO3 Release Team)
2017-04-18 3de0853 #80857 [TASK] Mark 6.2 as e-o-l in install tool core updater (Christian Kuhn)
2017-04-07 f2ce731 #77855 [BUGFIX] Allow file replace for editors (Helmut Hummel)
2017-04-04 7c45dc5 #48544 [FOLLOWUP][BUGFIX] Do not devlog bad code smells of core classes (Markus Klein)
2017-04-03 5d266a7 #48544 [BUGFIX] Do not devlog bad code smells of core classes (Markus Klein)
2017-03-31 a4c6edc #80589 [BUGFIX] FAL: Correctly iterate folder content with offset (Markus Klein)
2017-03-25 11506d7 #72299 [BUGFIX] Send correct HTTP message in getUrl (Markus Klein)
2017-03-09 21a8ee2 #64742 [BUGFIX] Extension update: Prevent multiple update trigger (Nicole Cordes)
2017-01-13 b236079 #78986 [BUGFIX] Remove range from sorting field (Georg Ringer)
2017-01-11 a3cc3f9 #79275 [BUGFIX] CacheHashCalculator does not exclude ADMCMD arguments (Benni Mack)
2017-01-07 8bc9de1 #79165 [TASK] Update copyright year to 2017 (Wouter Wolters)
2017-01-03 5631d83 #78822 [BUGFIX] Documentation of sessionTimeout (Anja Leichsenring)
2017-01-03 96f08d1 [TASK] Set TYPO3 version to 6.2.31-dev (TYPO3 Release Team)
2017-01-03 ec284cf [RELEASE] Release of TYPO3 6.2.30 (TYPO3 Release Team)
2017-01-03 0f79d43 #79114 [SECURITY] Protect Mailtransport (Wouter Wolters)
2016-12-31 7a99325 #70106 [BUGFIX] Do not use realpath for temporary file names (Stefan Froemken)
2016-12-30 5bb34d0 #76478 [TASK] Clean up DebuggerUtility (Nicole Cordes)
2016-12-24 98dd27a #70962 [BUGFIX] FAL relations duplicated when saving in workspaces (Andreas Wolf)
2016-12-16 5124e88 #78915,#78977 [BUGFIX] Optimize cache handling in ReflectionService (Helmut Hummel)
2016-12-15 18b19ea #78977 Revert "[BUGFIX] Reflection Cache does not save methodReflections" (Nicole Cordes)
2016-12-13 8095288 #78925 [BUGFIX] Fix exception in QuickEdit mode for empty pages (Manuel Selbach)
2016-12-12 8ef727a #78915 [BUGFIX] Reflection Cache does not save methodReflections (Tymoteusz Motylewski)
2016-12-08 01a927d #73241 [BUGFIX] Do not fetch pages with pid < 0 in prepareCacheFlush (Steffen Göde)
2016-12-08 bab723b #72654,#62660 [BUGFIX] Improve DataHandler handling for dbType fields (Nicole Cordes)
2016-12-07 1a32e92 #78551 [BUGFIX] Reset hidden field information in FormViewhelper (Nicole Cordes)
2016-12-03 b927c7b #77097 [BUGFIX] Reset FormViewHelper on execution (Helmut Hummel)
2016-11-22 f40917e [TASK] Set TYPO3 version to 6.2.30-dev (TYPO3 Release Team)
2016-11-22 ac6877b [RELEASE] Release of TYPO3 6.2.29 (TYPO3 Release Team)
2016-11-22 5b9a2b4 #78557 [SECURITY] Prevent unnecessary unserialize in SuggestWizard (Nicole Cordes)
2016-11-22 4a98563 #73453 [SECURITY] Disallow invalid encoding in GeneralUtility::validPathStr (Benni Mack)
2016-11-18 a61499f #78703 [BUGFIX] Use GeneralUtility::getUrl in DocumentationService->fetchDocument (Claus Due)
2016-11-18 354b01b #78739 [BUGFIX] Update session id in user property (Helmut Hummel)
2016-11-15 ee1ef6a #76153 [BUGFIX] Catch exceptions while dumping a file (Frans Saris)
2016-11-13 83ab00a #78238 [BUGFIX] Bind the cHash to the id of the "real" page (Helmut Hummel)
2016-11-10 3980012 #78526 [BUGFIX] Use page uid instead of alias for cHash calculation (Helmut Hummel)
2016-11-07 45e138c #71340 [TASK] Provide documentation Settings.cfg (Gernot Schulmeister)
2016-11-05 a861b18 #78540 [BUGFIX] Load ext_emconf information in extension installation (Nicole Cordes)
2016-11-01 0c4a74e [TASK] Set TYPO3 version to 6.2.29-dev (TYPO3 Release Team)
2016-11-01 c423e5b [RELEASE] Release of TYPO3 6.2.28 (TYPO3 Release Team)
2016-11-01 94ec146 #78494,#76542 [BUGFIX] Prevent installation of incompatible extensions (Benni Mack)
2016-10-27 cf20781 #73156 [BUGFIX] FrontendContentAdapterService replaces LF chars before concat (Daniel Neugebauer)
2016-10-25 d262000 #78418 [TASK] splitFunctionalTests.sh in 6.2 (Christian Kuhn)
2016-10-25 c01ccd3 #78368 [BUGFIX] Fix reference count when ref_table is sys_file (Wouter Wolters)
2016-10-25 4f5926a #78408 [TASK] Remove failing test in IntegerValidatorTest (Anja Leichsenring)
2016-10-21 953119f #76901 [BUGFIX] Reset SYS/exceptionalErrors in live preset (Benni Mack)
2016-10-13 44aa8dc #77956 [BUGFIX] Prevent exception due to missing id in the language menu (Xavier Perseguers)
2016-10-12 59f7404 #78021 [BUGFIX] Exception with cHashIncludePageId but no id in the URL (Dmitry Dulepov)
2016-09-30 0aa80a6 #78102 [BUGFIX] Incorrect cHash generation may cause 404 on any page (Dmitry Dulepov)
2016-09-23 5b6f9fc #77877 [BUGFIX] Correct show configuration in newContentElement wizard (Nicole Cordes)
2016-09-13 2c19670 [TASK] Set TYPO3 version to 6.2.28-dev (TYPO3 Release Team)
2016-09-13 46b333a [RELEASE] Release of TYPO3 6.2.27 (TYPO3 Release Team)
2016-09-13 8aecd0c #76462 [!!!][SECURITY] Mitigate potential cache flooding (Benni Mack)
2016-09-13 b04d394 #77906 [SECURITY] Fix select_key XSS in PageLayoutView (Georg Ringer)
2016-09-13 67e63a9 #77204 [BUGFIX] Prevent orphaned tags in Typo3DatabaseBackend (Thomas Schlumberger)
2016-09-02 44949df #64176 [BUGFIX] Prevent fatal error if no column in page layout is defined (Nicole Cordes)
2016-09-02 0f77d52 #77755 [BUGFIX] Check for null in debug_check_recordset (Morton Jonuschat)
2016-08-23 b495775 #77588 [BUGFIX] Fix sql error in EXT:linkvalidator (Daniel Windloff)
2016-08-19 b2c9915 #76441 [BUGFIX] Index all file mounts in FAL indexer scheduler task (Hannes Bochmann)
2016-08-18 dc83c6d #76928 [BUGFIX] Allow URL path segments like "typo3" (Mathias Brodala)
2016-08-18 ba4521b #67894 [BUGFIX] Felogin form with default layout is not visible (Michiel Roos)
2016-07-19 95c3944 #77098 [BUGFIX] Prepend current path to versionNumberInFilename RewriteRule (Marco Huber)
2016-07-19 95f1113 [TASK] Set TYPO3 version to 6.2.27-dev (TYPO3 Release Team) var/softaculous/monsta/changelog.txt 0000755 00000001643 15234342774 0013716 0 ustar 00 Version 2.10.4 - Released 25 September, 2022 (no extended notes for release)
Removed any reference to PHP Magic Quotes
Updated UI Wizard for context menu options (Copy Name and Create Zip Archive)
Version 2.10.3 - Released 9 November, 2020 (no extended notes for release)
Third-party Javascript libraries updated
Version 2.10.2 - Released 17 August, 2020 (no extended notes for release)
Addressed fixes for the security vulnerabilities detailed here.
Resolved an issue with uploading recursive folders
Incremental improvement to file upload dialog
Version 2.10.1 - Released 14 December, 2019
Resolved issue with unzipping files on upload
Add a right-click "Create Zip Archive" feature to zip up files on server
FIle upload progress now working properly for chunked uploads
Version 2.10 - Released 12 November, 2019
Files now uploaded in chunks
Added action logging
Bug fixes var/softaculous/ostic2/changelog.txt 0000755 00000014120 15234343021 0013574 0 ustar 00
osTicket v1.12.6
================
Enhancements
issue: Edit User Popup Perm (c73877d)
format: Strip PUA (Plane 16) (caeda93)
issue: New Task Alert (5dd123e, 3283050)
lint: Minified JS Warnings (0443715)
support: IE Discontinued (699728f)
issue: Shared Mailbox Auth (7bb9fd8)
plugins: Add Version Column (f86c93e, 5b0f1ce)
Issue: User Imports Headers (787417f)
Support message/rfc822 as attachments (af1c4a6)
tooltip: Email Username (edd1fc3)
Issue: Ticket Search Typeahead (9b9a56f)
Issue: Ticket Open URL (f2e2403)
Inline Edit Fields With Data Integrity (6015d04)
Improvements
issue: Show Custom Validation Message (ca6ad5c)
SLA Grace Period (b373b8f)
issue: DynamicForm i18n Instructions Decode (56d3d67)
issue: Information Field Help Text Decode (abb9799)
i18n: Help Text Formatting (6b8cc9b)
issue: ThreadEntryField Help Text (6370484)
issue: Department Parent (3f29845)
Add support for sub-query based constraints. (c069def, 6579cf4, f61748c, 0eeec7e)
Update class.filter.php (#5320) (f42f2baf)
Allow external UserAuthenticationBackend … (ffb179f)
Issue: New Agent Extended Access and Teams (d4b8b3a)
issue: Mass Process Add Users To Organization (6cc7c69)
i18n: TextareaField Placeholder (fa9df2b)
issue: Confirm Popup Promise (b1f881b)
Remove unnecessary PHP Notice in ORM (Fix #5432) (5dac549, 03e25a8)
session: Destroy Warning PHP 7.3 (e6f0483)
oops: is_numeric Soft Fail (7c9ed61)
Oops: User Import Fix (40b40f8)
validate: Validation Error Messages From Source (9e21dfd)
issue: PasswordField Validation (9cc5cb6)
issue: Multiple Choice Export (3005d42)
lint: Uninitialized Matches (7873c5b)
issue: PDF Global $ost (07878f5)
Spelling correction function name (44cbc30)
issue: Quotes In User Name (ea6fc44)
issue: Add Remote Collaborator (c60e2f3)
emoji: Strip From Subject (e3547ea, e24c78c)
Issue: DB Error #1054 (18c9311)
install: Forum and Docs Links (dddfede)
queue: Inherit Columns Option (2e146ad)
Issue: Help Topic Number Format (52c9c59)
issue: User Manage Org Name (7a6b85c)
issue: Require Client Login (5136198)
Fix confusing sentence (4e7d12c)
issue: Update Staff checkPassword() (0659338)
validate: Number Field Edit Zero (e6e4e90)
issue: New Agent Welcome Email (1949d4f)
queue: Inherit Columns Option (38df2c8, 1a32e2a, 4434a93)
Issue: Remove Referrals (2acf9aa)
mail: Mail_Parse::getAttachments () (d310740)
Issue: Blank Date Time (60ccbb7)
Issue: Thread Events for File Field Changes (4d43adf)
Issue: New Custom Fields (9591411)
Oops: Variable Overwrite (c048768)
session: Destroy Warning (8c69891)
Issue: DB Error #1064 Queue Counts (f26ce60)
notes: Confirm Deletion (0d86e7f)
Performance and Security
xss: All Reported Vulns (f705001, de41aeb, fc4c860, d54cca0, 6c724ea, 601fdcd)
osTicket v1.12.5
================
### Performance and Security
* Hotfix: File data callback (d3e643d)
osTicket v1.12.4
================
### Enhancements
* issue: Spaces In Username (7c8f557)
* i18n: KnowledgeBase JS (bce8296)
* i18n: KnowledgeBase Category (5646e7c)
* i18n: OpenSSL Error (af6f0e9)
* Message Variable - %{message} (315c4e7)
* Datatimepicker: Time format (f0fccbc)
### Improvements
* Highlight tab with error(s) (b81b703)
* format: Clickable URLs (4f7569d)
* Queue Pages Default (dff8bc1, 5105250)
* Add Time boundaries to Between date range (cbc89b3, 31c97cf)
* Clear Overdue Flag on Due Date Change (8c76d70)
* db: System Time Zone (76087fc, d8adf85)
* Modify Reopen Assignment (d50ebbb)
* issue: Format File Name (bd427cd)
* issue: DB Error #1062 (27c925c)
* Issue: Edit Task Fields (05cbb75)
* issue: In-Reply-To Header (8849c19)
* orm: Refetch Failure (eb4bda8)
* issue: Delete Org Session Failure (bbd0c25)
* Feature: Mark as Answered permission option (2fcc664, 52aaa0b)
* issue: Umlauts In Subject (cccdb15)
* issue: Umlauts In Sender's Name (e3f42c3)
* Fix use of possibly uninitialised $_SERVER['HTTPS'] (8e9b150)
* issue: ACL Oopsie (4d774bc)
* issue: Revert fefed14 (c9be2e0)
### Performance and Security
* Arbitrary Method Invocation (4dfb77c)
* Auth: Authentication Token Bypass (a9834d8)
* mPDF: Remote Code Execution Vulnerability (6e039ab)
* issue: Attachment Filter (9f4fbc2)
osTicket v1.12.3
================
Enhancements
Datetime Formats (4709824)
issue: Revert 453e815 (ddde34b)
Revert "issue: Advanced Search Default Sorting" (d4befcd)
feature: Expanded Print View (b2bd45f)
i18n: Register Include (9b18dd6)
Lint Fix (68f11e1)
Update osTicket Requirements (a6a18ee)
Update osTicket Requirements (27f1578)
issue: Update Installer PHP Requirements (15d678b)
issue: Update Outdated Links (25bf88f)
Improvements
issue: Mbstring Extension Requirement (5a96884)
Instantiate StaffDeptAccess (390ec3e)
issue: Complete Thread Var Padding (Outlook) (d96285f)
Issue: Empty Due Date (30f3b55)
issue: PHP 7.3 New Agent Set Password (1bcd0e2)
European Date Format Issue (df7306f)
issue: CSV Patch Adv. Search Error (6ea7526)
Issue: Annul Closed Events (8029b1b)
issue: Department Referral Email (26d2990)
Date Range Period Timezone (0f06f85)
Issue: Undefined Constant Warning (c2ca730)
issue: Support Exchange Shared Mailbox Auth (ac9ea5b)
Issue: Inline Ticket Assignment (b757ec4)
issue: Dashboard No Help Error (ab0cdc6)
Organization Update (1588344)
issue: Advanced Search Default Sorting (dda483e)
issue: Image Attachment View (eb1a4ea)
issue: Reset Role Permissions (0c2cecb)
issue: Error On QueueSort Config (1b1e742)
Required Short Answer Field = '0' (c58916b)
Fix Admin Alert (5f6bd42)
issue: Set Staff Password On Creation (d9108b1)
issue: THIS_VERSION Utilize MAJOR_VERSION (5b4c512)
Issue: Reopen Assignment (e73e881)
osTicket v1.12.2
=============
Enhancements
issue: v1.12 Git MAJOR_VERSION (3f80266)
Improvements
issue: README.md osTicket Logo (7121043)
issue: README.md Image Size (8b90010)
issue: DatetimeField Remove Unused Vars / Use parseDateTime() (d9aa91b) var/softaculous/nextcloud/changelog.txt 0000755 00000504004 15234343162 0014411 0 ustar 00 Version 28.0.1 December 21, 2023
Changes:
Fix npm audit (activity#1437)
Fix missing parameters when type is not “known” (activity#1469)
Fix: Allow older app values to be set (logreader#1079)
Fix(mail): Fix mail handling when force_language is true or false (notifications#1744)
Fix(push): Allow apps to provide already parsed notifications (notifications#1754)
Catch and log error thrown while parsing dates from metadata (photos#2194)
Fix: Adjust favorite icon to be accessible (photos#2197)
Fix TypeError with invalid coordinates (fix #2187) (photos#2207)
Fix(Users/Quota setting): Prevent floating point value from getting truncated in locales other than english (server#42106)
Comment legacy file_metadata table migrations (server#42108)
Enh(settings): Set main page heading (server#42125)
Fix(a11y): Unified search headings (server#42131)
Fix(caldav): don’t reuse query builder objects (server#42152)
Version 28.0.0 December 12, 2023
Changes:
Fix share creation insert and get (server#26716)
Fix creating events with old (< unix time) lastoccurence (server#31790)
Add api to register setup checks (server#32550)
Mark comments as read (server#32775)
Add batch methods in user backends (server#32912)
Talk federation authentication (server#33105)
Changed mapping to font (server#34419)
Add IProvideEnabledStateBackend interface (server#34443)
Cleanup comments code (server#35424)
Cleanup psalm issues in DB/ContactsManager and Console (server#35539)
Fix background theming deletion and cypress admin theming tests (server#35728)
Display displayname on federated shares (server#35915)
Extend fix-key-location to handle cases from broken cross-storage moves (server#36068)
Specify the parameters of FederatedFileSharing controllers (server#36214)
Log to `error_log` in fatal case (server#36316)
Refactors tests/app.php to improve code readability. (server#36742)
Fix: Avoid failing with duplicate checks (server#36830)
Fix: Escape group names for LDAP (server#37201)
Avoid db connections when logging db connection errors (server#37458)
Ci(checkers): Require composer autoloaders for all shipped apps (server#37481)
Fix: log fopen calls when stream isn’t available (server#37624)
Refactors Command/Encryption/Enable.php to improve code readability. (server#37665)
Redis: use atomic operations everywhere (server#37758)
Check for open_basedir before reading /proc (server#37959)
Use more efficient tag retrieval on DAV report request (server#37969)
Imaginary WebP support (server#38032)
Add label to “default quota” multiselect (server#38075)
Allow “wasm-unsafe-eval” in CSP (server#38082)
Make Node::getParent lazy (server#38150)
[master] Update psalm-baseline.xml (server#38162)
Show pending popover menu when password is enabled by default (server#38164)
Admin audit app: optimization according to PHP 8 (server#38176)
Fix share roots always being marked as writable (server#38179)
Increase from 100000 to 600000 iterations for hash_pbkdf2 (server#38206)
Enh(theming): RGBY contrast (server#38211)
Add utility command for object store objects (server#38226)
Allow enforcing share passwords only when already asking for a password (server#38227)
Chore(deps-dev): Bump cypress from 12.11.0 to 12.12.0 (server#38232)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.7 to 9.6.8 in /build/integration (server#38234)
Reload filelist when adding or removing shares (server#38259)
Refactors “strpos” calls in lib/public to improve code readability. (server#38260)
Refactors “strpos” calls in lib/private to improve code readability. (server#38261)
Fix loading custom logo image (server#38291)
Add config variable for curl timeout (server#38292)
Use aria-expanded correctly on toggle user actions (server#38294)
Feat: Add occ user:user:sync-account-data for updating oc_accounts information from user backends (server#38298)
Fix: better error message on missing user files dir (server#38300)
Fix(caldav): Ignore invalid events for reminder generation (server#38301)
Migrate a few components to NcSelect (server#38306)
Fix(carddav): Check if SERVER variables are set before accessing them (server#38308)
Fix: Throw early when a service cannot be found in the app container (server#38322)
Remove focus-visible polyfill (server#38323)
Optimize webpack chunking (server#38329)
Adjust style of passwordless login (server#38330)
Remove some dead code in files app (server#38332)
Weather_status: Improve contrast of favorite icon (server#38333)
Master is now 28 (server#38336)
38340 fix add group broken (server#38344)
Chore(deps-dev): Bump guzzlehttp/guzzle from 7.5.1 to 7.6.1 in /build/integration (server#38346)
Make unsupported browser check asynchronous (server#38354)
Fix(trashbin): Truncate long filenames (server#38355)
Add imaginary_key (server#38365)
Add commands to copy/move files (server#38366)
Adjust files favorite marker to fulfill A11Y contrast requirements (server#38370)
Chore(deps-dev): Bump tar from 6.1.14 to 6.1.15 (server#38372)
Webpack: add nonce to unsupported-browser-redirect chunk (server#38374)
Refactor: migrate OC_EventSource to dependency injection (server#38386)
Bug-report-template – move `Official All-in-One appliance` to the bottom (server#38393)
Enh(contacts): show/hide addressbooks for all (server#38397)
Store encrypted OAuth2 client secrets (server#38398)
Remove deprecated `OC.appSettings` API (server#38400)
Fix(SAB): Save avatar to SAB (server#38413)
Don’t always check if we need to setup the object store root (server#38415)
Fix(carddav): Check enumeration settings for all SAB methods (server#38423)
Feat(ocp): Add types and strict typing to \OCP\Group\IGroup (server#38425)
Fix deletion of User when system link are used in him user folder (server#38429)
Add OpenAPI specs (server#38438)
Fix(files): make open folder a default action (server#38441)
Fix(carddav): Don’t show system address book cards to guests (server#38448)
Fix(carddav): Make system contact phone number RFC compliant (server#38454)
Use default page size for jumping to desired offset (server#38457)
Revert “Fix table view” (server#38458)
Adjust active element visibility in the usermenu (server#38459)
Adjust active element visibility in the sidebar (server#38460)
Add fallback when a there is no preview for a version (server#38467)
Log failures to read certificates during listing (server#38468)
Fix initialisation of versions in the DB (server#38469)
[master] fix: Catch Deadlock properly as execute throws Doctrine exceptions not our wrapped ones (server#38478)
Fix(dav): Fix avatar size in system address book (server#38481)
Chore: update workflows from templates (server#38486)
Emit an event when a message is logged (server#38490)
Chore(deps-dev): Bump puppeteer from 19.10.1 to 20.4.0 (server#38492)
Fix: catch errors in id3parser library (server#38496)
[master] Fix npm audit (server#38497)
Replace id3parser with mp3info (server#38498)
Fix(docs): Fix language and copy-paste class name in docs of CSP (server#38513)
Chore(libphonenumber): Bump giggsey/libphonenumber-for-php to giggsey… (server#38514)
Chore(deps): Drop swiftmailer/swiftmailer (server#38516)
Fix contrast for inactive elements of the main navigation (server#38519)
Improved display of app links (server#38520)
Chore(app): Do not clear unused cache key (server#38524)
[master] Update ca-cert bundle (server#38534)
Ci: Use conventional commits for CA bundle updates (server#38537)
Uses “Null Coalescing Operator” to improve code readability. (server#38543)
Fix(dispatcher): Migrate to OCP event dispatcher before symfony/event… (server#38545)
Fix(deps)!: Upgrade symfony/event-dispatcher to supported version 5.4.26 (server#38546)
Fix app menu flicker (server#38549)
Chore: Drop app code checker test data (server#38550)
Chore!: Drop \OC_App::isEnabled (server#38551)
Chore!: Drop \OC_Defaults::getLogoClaim (server#38552)
Chore(deps): Bump doctrine/dbal to 3.7.x (server#38556)
Feat(request): Allow to match the client version with the IRequest::U… (server#38561)
Drop \OC_App methods deprecated in Nextcloud 14 (server#38566)
Remove deprecated legacy loader from `OC` (server#38567)
Redis: Do not try to authenticate with non-string password/user (server#38568)
Improve oauth2 database migration from ownCloud (server#38577)
Fix: correct hint for missing posix extension (server#38581)
Feat(ocp): Allow sending emails with subject and body (server#38585)
Fix(ocp): Mark IMessage::attachInline as @since 27 (server#38586)
Chore: Do not sass-compile external apps (server#38590)
Fix(caching): Avoid checking existence before fetching (server#38591)
Chore(ocp)!: Drop \OCP\Util::linkToPublic (server#38593)
Chore: remove check for suhosin.executor.func.blacklist (server#38595)
Fix(CI): Temporary workaround – Run Psalm CI with 1 thread only so it… (server#38597)
Refactors “strpos” calls in /core to improve code readability. (server#38602)
Refactors “strpos” calls in /apps/workflowengine (server#38604)
Refactors “strpos” calls in /apps/comments (server#38605)
Refactors “strpos” calls in /apps/settings (server#38606)
Refactors “strpos” calls in /apps/user_ldap (server#38608)
Refactors “strpos” calls in /apps/dav (server#38610)
Refactors “strpos” calls in /apps/theming (server#38611)
Feat(HTTPClient): Provide wrapped access to Guzzle’s asyncRequest() (server#38613)
Refactors “strpos” calls in /apps/files_external (server#38619)
Refactors “strpos” calls in /apps/files_sharing (server#38620)
Replace if/else with return match (server#38622)
Fix(storage): fallback to copy and unlink when rename fails (server#38623)
Fix: expect interface, not a specific implementation (server#38625)
Bump marked from 4.3.0 to 5.0.4 (server#38627)
Feat: set background = backgroundColor via occ (server#38631)
Test: add test for cache mount provider (server#38633)
Feat: remove check for OpenSSL 1.0.1d and 1.0.2b (server#38635)
[1/3] Refactors /core controllers using constructor property promotion. (server#38636)
[2/3] Refactors /core controllers using constructor property promotion. (server#38637)
[3/3] Refactors /core controllers using constructor property promotion. (server#38638)
Bugfix/36644 pruneOutdatedSyncTokens deletes all entries (server#38639)
Openapi: Fix wrapping OCS responses that are not DataResponse (server#38640)
Chore(appframework)!: Drop \OCP\AppFramework\Http\EmptyContentSecurityPolicy::allowInlineScript (server#38642)
Avoid requests to opengraph image if no host detected (server#38645)
Fix(caldav): Cast calendar objects id to int when building index (server#38648)
Fix(caldav): Close DB cursor in reminder index background job (server#38649)
Chore: Drop dead private methods in /lib (server#38652)
Fix(systemtags): Incorrect tags shown temporarily (server#38655)
Fix OpenAPI core paths (server#38656)
Disable background color on group-header line (on hover, focus, active) (server#38662)
Chore: Replace \OC::$server->query with \OCP\Server::get in /lib (server#38663)
Fix(weather_status): Always show all favorite locations (server#38664)
Fix(weather_status): Pass address as param to OSM API (server#38665)
Fix(SystemTagManager): Use truncated tagName in getTag and updateTag (server#38667)
Feat: add width, height, crop and mode to BeforePreviewFetchedEvent (server#38679)
Fix(apache): Serve `mjs` (module javascript) as static files (server#38688)
Fix(actions): cypress (server#38694)
Chore(deps-dev): Bump css-loader from 6.7.3 to 6.8.1 (server#38695)
Chore(deps-dev): Bump tslib from 2.5.0 to 2.5.3 (server#38696)
Update bug report issue template (server#38700)
Fix oauth2 tests (server#38701)
Do not cast sizes to int in Trashbin class (server#38703)
Fix wrong link in issue template (server#38710)
Select the fileid first when looking for incomplete files (server#38714)
Chore(deps): Bump @nextcloud/vue from 7.11.6 to 7.12.0 (server#38715)
Drop meta robots header (server#38725)
Chore(deps-dev): Bump dms/phpunit-arraysubset-asserts from 0.4.0 to 0.5.0 in /build/integration (server#38733)
Chore(deps): Bump @nextcloud/event-bus from 3.0.2 to 3.1.0 (server#38734)
Allow to specify upgrade.cli-upgrade-link in order to link to the correct documentation (server#38735)
Add a Dependabot configuration to autoupdate GitHub action versions (server#38737)
[master] Fix npm audit (server#38742)
Allow stdClass in XML responses (server#38745)
Perf: skip request without write permission (server#38747)
Uses PHP8’s constructor property promotion in core/Command/Encryption (server#38762)
Uses PHP8’s constructor property promotion in core/Command/Db classes. (server#38764)
Uses PHP8’s constructor property promotion in core/Command/User classes. (server#38766)
Uses PHP8’s constructor property promotion in core/Command/Maintenance (server#38767)
Uses PHP8’s constructor property promotion in core/Command/Config and Group (server#38768)
Uses PHP8’s constructor property promotion core/Command/App,/Background, and /Broadcast (server#38769)
Make oauth2 client secret column larger (server#38770)
Uses PHP8’s constructor property promotion core/Command/Info, /Integrity, and /Preview (server#38771)
Add bruteforce protection in OauthApiController (server#38773)
Uses PHP8’s constructor property promotion in core/Command/Log, /Security, and /SystemTag (server#38774)
Uses PHP8’s constructor property promotion in core/Command and / (server#38775)
Fix(core): Do not invert app menu text color (server#38776)
Fix(carddav): Make SystemAddressBook::__construct $groupManager argument nullable (server#38777)
Ci: pin setup-php to avoid a regression (server#38781)
Chore(deps): Bump skjnldsv/read-package-engines-version-actions from 1.1 to 2.2 (server#38785)
Chore(deps): Bump peter-evans/create-or-update-comment from 2 to 3 (server#38786)
Chore(deps): Bump actions/setup-node from 2 to 3 (server#38787)
Chore(deps): Bump actions/upload-artifact from 2 to 3 (server#38788)
Align subadmins css class name (server#38793)
Enable version features again with S3 versioning (server#38794)
Fix: Avoid failing to update the current version entry if there is none (server#38800)
Add types to responses (server#38802)
Bump @nextcloud/auth @nextcloud/axios @nextcloud/calendar-availability-vue @nextcloud/dialogs @nextcloud/files and @nextcloud/router (server#38803)
Make sure to show download button only one time (server#38804)
Add files actions testing + code coverage (server#38806)
Fix issues where unencrypted_size was being falsely used for non-encrypted home folders (server#38808)
Generate user themed favicon and touchicon (server#38823)
Enh(a11y): New user modal (server#38826)
[master] Update psalm-baseline.xml (server#38827)
Fix files API route names (server#38830)
Adjust saving of status messages (server#38832)
Replace plain input fields with NcTextField fields and NcMultiSelect … (server#38839)
Fix: Removed invalid user from CODEOWNERS file (server#38841)
Fix type in BeforeMessageLoggedEvent (server#38843)
Feat: add detected mime type to exception (server#38844)
Move deprecation warnings to debug (server#38852)
Introduce LanguageModel/TextProcessing OCP API (server#38854)
Fix(sab): put location in proper address field (server#38856)
File scanner performance improvements (server#38858)
Add summary of detected changes to files:scan output (server#38860)
Chore(deps): Bump cypress-io/github-action from 5.8.1 to 5.8.3 (server#38863)
Bump @nextcloud/files from 3.0.0-beta.9 to 3.0.0-beta.10 (server#38865)
Fix confusion around mail settings and improve layout a bit (server#38868)
[master] Fix npm audit (server#38869)
Style(config): alphabetise preview providers (server#38876)
Cleanup controller service aliases (server#38878)
Fix user log.condition feature (server#38881)
Don’t disable actions when saving share permissions (server#38888)
Use source cache when listing folder during recursive copy (server#38890)
Add getDocBaseUrl on theming app (server#38900)
Reduce load of files versions preview loading (server#38905)
Fix: ContactManager search with fullmatch (server#38907)
Cast string type for trim() (server#38910)
Adjust admin setup check to increase warning to configure https (server#38915)
Fix(l10n): Fix plural issue with different locale and language (server#38917)
Chore: update node engines to next LTS (server#38924)
Chore: Adjust editorconfig for package.json and package-lock.json (server#38927)
Fix(systemtags): Add missing systemtags index (server#38928)
Clean failed upload chunks (server#38930)
Fix(s3): Pass SSE-C parameters for multipart upload (server#38934)
[f2v] Rename, favorite and edit locally actions (server#38939)
Implement optimized getDirectoryContent for DAV (server#38945)
Align collaborative tags differently (server#38948)
[f2v] Favorites view (server#38950)
Chore(deps): Bump fast-xml-parser and webdav (server#38951)
Fix(eventdispatcher): Don’t use all evaluating “or” (server#38955)
Use getsystemvalue-functions in Mailer.php (server#38958)
Dav: clean path before putting it in the statcache (server#38965)
Enh(sab): Add profileUrl to SAB (server#38969)
Uses PHP8’s constructor property promotion in core/Migrations (server#38974)
Uses PHP8’s constructor property promotion in remaining /core classes (server#38975)
Refactors lib/private/Accounts classes (server#38978)
Refactors lib/private/Contacts. (server#38986)
Refactors lib/private/Mail. (server#38987)
Fix: restore AppsSlideToggle feature (server#38988)
Refactors lib/private/Avatar. (server#38989)
Refactor lib/private/Calendar (server#38990)
Refactors lib/private/SystemTag (server#38995)
Fix(dav): Catch SAB sync errors during upgrade (server#39005)
Switch to bootstrap font-stack (server#39008)
[1/3] Refactors lib/private/Security (server#39011)
[2/3] Refactors lib/private/Security (server#39012)
[3/3] Refactors lib/private/Security (server#39013)
Add “button” class to the QR code link (server#39015)
Fix(s3): fix handling verify_bucket_exists parameter (server#39017)
Migrate federation application to LoggerInterface (server#39018)
Adds same object return annotations to lib/private/Mail classes (server#39020)
Fix(files): Only render the menu if there are actions to show (server#39025)
Chore: upgrade typescript, eslint and fix lint (server#39029)
Migrate deprecated vue property (server#39038)
Refactors lib/private/Log (server#39039)
Fix(ocp): TimedJob can’t have a more specific argument than Job (server#39042)
Fix(ocp): Fix reference of dashboard IAPIWidget::getItems from WidgetItem (server#39043)
Fix root mounts not being setup in some cases (server#39044)
Update aria-expanded attribute for sidebar apps-slide-toggles (server#39049)
Enh(a11y): Users table (server#39050)
Feat(ocp): More specific type for ICapabilities::getCapabilities (server#39057)
Avoid adding (attribute=) part to filter which will confuse LDAP servers (server#39058)
Fix(TagSearchProvider): Short circuit if no tag matches the query (server#39062)
Migrate away from ILogger in encryption (server#39065)
Bump sabre/http to 5.1.7 in master (server#39070)
Fix(settings): Migrate away from deprecated `NcPopoverMenu` (server#39073)
Refactors lib/private/Profile. (server#39075)
Fix(cypress): branch definition and update from template (server#39076)
Fix(CalDAV): Check if the vObject exists before attempting any operations (server#39083)
Feat(admin_audit): Migrate to non-deprecated IEventDispatcher (server#39086)
Fix event names of 2FA related typed events (server#39089)
Silent `imagecreatefromstring()` errors (server#39093)
Chore(deps): Bump skjnldsv/read-package-engines-version-actions from 2.1 to 2.2 (server#39095)
[master] Update psalm-baseline.xml (server#39096)
Fix(settings): Migrate away from `NcAppNavigationCounter` (server#39102)
Files_sharing: Remove orphaned file with deprecated imports (server#39103)
[master] Fix npm audit (server#39104)
Fix(updatenotification): Remove deprecated `NcPopoverMenu` and use `NcActions` instead (server#39106)
Refactors lib/private/Lock (server#39108)
Refactors /Metadata, /Migration, and /Net namespaces in /lib/private/ (server#39109)
[1/2] Refactors lib/private/Collaboration (server#39113)
[2/2] Refactors lib/private/Collaboration (server#39114)
Fix(sse): don’t update uncached files (server#39115)
Psalm: Enable more/less specific errors (server#39116)
Psalm: Disable cache (server#39120)
Rewrite OCS CSRF check to be readable (server#39125)
Fix password confirmation master (server#39127)
Fix(ldap): avatar is not being fetched (server#39128)
Refactors files_external app commands (server#39131)
Fix(CardDAV): catch right exception when checking for federated app classes (server#39132)
User_status: Add OpenAPI spec (server#39133)
Fix(files_sharing): hide download permission for circle shares (server#39146)
Refactors files app commands (server#39150)
Migrate federated file sharing to PSR LoggerInterface (server#39160)
Add OCSPreconditionFailedException (server#39164)
Enable all files_versions features when groupfolders is enabled (server#39165)
Refactors dav app commands. (server#39166)
Migrate files sharing to PSR LoggerInterface (server#39169)
Add command do delete orphan shares (server#39170)
Support opening and comparing versions in viewer (server#39171)
Use square bracket syntax to modify array (server#39175)
Fix: Cleanup unused imports and some type deprecations (server#39189)
Fix(dav): Move DAV app to non deprecated event dispatcher (server#39190)
Feat(sharing): add sharing overview view (server#39196)
Fix: Remove deprecation warning for already removed API (server#39200)
Fix(cypress): revert only toggle (server#39203)
Docs(dav): remove outdated comment (server#39204)
Remove jQuery from main entry point where not needed (server#39210)
Add return types (server#39211)
Refactor “strpos” and “substr” calls in federatedfilesharing app to improve code readability (server#39213)
Refactor “substr” calls in lib/private to improve code readability (server#39216)
Migrate parts of files app away from depecrated Ilogger (server#39218)
[master] Update psalm-baseline.xml (server#39219)
Bugfix/bulk upload empty files (server#39221)
Migrate more apps to IEventDispatcher (server#39222)
Provisioning_api: Add OpenAPI spec (server#39223)
Convert isset ternary to null coalescing operator (server#39224)
Convert isset ternary to null coalescing operator (server#39225)
Convert isset ternary to null coalescing operator (server#39226)
Fix(files): default emptycontent message (server#39229)
Refactor comments app (server#39236)
Refactor contactsinteraction app (server#39243)
Preload custom properties when propfinding folders (server#39248)
Comments: Add OpenAPI spec (server#39257)
Add IgnoreOpenAPI attribute (server#39263)
Add instance category while checking new updates (server#39264)
Fix(flow): Revert invalid rename of check class for RequestTime (server#39268)
Bump CS Fixer rules to follow latest Nextcloud standards (server#39271)
Sharebymail: Add OpenAPI spec (server#39272)
Weather_status: Add OpenAPI spec (server#39274)
Add optional to add backtrace to log items (server#39275)
Set double outline to buttons in focus state (server#39277)
Federation: Add OpenAPI spec (server#39280)
Settings: Add OpenAPI spec (server#39284)
Dashboard: Add OpenAPI spec (server#39286)
Theming: Add OpenAPI spec (server#39287)
Chore(deps): Bump semver from 5.7.1 to 5.7.2 (server#39296)
Fix(dav): close cursor when fetching max id (server#39297)
Fix(comments): Emit CommentsEntityEvent as typed event (server#39304)
Feat(dav): Emit a typed event to deprecate OCA\DAV\Connector\Sabre::addPlugin (server#39305)
Fix(profile): fix getUID on nullable user variable (server#39309)
Updatenotification: Add OpenAPI spec (server#39312)
User_ldap: Add OpenAPI spec (server#39313)
Dav: Add OpenAPI spec (server#39315)
Oauth2: Add OpenAPI spec (server#39316)
Change color for primary element on hover (server#39317)
Cloud_federation_api: Add OpenAPI spec (server#39318)
Files_versions: Add OpenAPI spec (server#39319)
Files_trashbin: Add OpenAPI spec (server#39320)
Files_external: Add OpenAPI spec (server#39321)
Files_external: getStorage before remove (server#39323)
Cibit): fix failing test setup (server#39324)
Files: Add OpenAPI spec (server#39327)
Federatedfilesharing: Add OpenAPI spec (server#39328)
Fix: also run phpunit on `apps/theming/css` modified files (server#39329)
Files_sharing: Add OpenAPI spec (server#39330)
Core: Add OpenAPI spec (server#39331)
Set double outline on checked state for radio buttons (server#39332)
Chore(deps-dev): Bump @pinia/testing from 0.0.16 to 0.1.2 (server#39336)
Fix(workflowengine): Migrate from deprecated `NcMultiselect` to `NcSelect` (server#39337)
Fix(node): non-existing folder is not searchable (server#39339)
Cloud_federation_api: Fix OpenAPI spec (server#39341)
Chore(CI): Sign .drone.yml file (server#39343)
Handle more exceptions in AmazonS3::fopen (server#39367)
Fix: Always apply fullscreen styling to sidebar (server#39378)
Fix(db): no hardcoded table prefix is expected (server#39380)
Enh(a11y): Add aria-modal to dialogs (server#39382)
Feat: Add public event for missing indices (server#39389)
Change color of error and success (server#39391)
Fix(i18n) Changed case of “Files” (server#39400)
Fix(i18n) Changed grammar related to “login” (server#39401)
Enh(a11y): User management settings dialog (server#39402)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.8 to 9.6.10 in /build/integration (server#39403)
Chore(deps): Bump dompurify from 2.4.5 to 3.0.5 (server#39405)
[master] Fix npm audit (server#39409)
Fix(core): Add password confirmation requirement for getapppassword (server#39416)
Fix: check that object store backend supports multi part uploads (server#39432)
Chore(3rdparty): update symfony/process to 5.4.24 (server#39441)
Chore: update codeowners for 2fa (server#39442)
Fix(l10n): User manager (server#39444)
Refactor user_ldap group membership cache and add check-group command (server#39446)
Fix sharing of encrypted files (server#39447)
Docs: remove superfluous phpdocs (server#39449)
Chore(3rdparty): update symfony/console to 5.4.24 (server#39455)
Fix: Correctly add `module` content type to script tags with versions (server#39456)
Add more space below item preview explanation (server#39460)
Improve sharing flow (server#39472)
Fix(IParallelAwareJob): Check for other reserved jobs before setting new ones as reserved (server#39473)
Fix(i18n) Fixed grammar (server#39474)
Fix(i18n) Fixed grammar (server#39475)
Remove opacity on federation control action buttons (server#39476)
Chore(3rdparty): update symfony http-foundation, routing and translat… (server#39477)
Migrate files external to PSR LoggerInterface (server#39480)
Fix: don’t emit Hooks when hookpaths are empty (server#39481)
Fix(files): Adjust files favorite marker for vue file list being cropped (server#39483)
Fix(dispatcher): Move remaining simple cases in apps/ folder to IEven… (server#39485)
Chore(3rdparty): update punic to 3.8.1 (server#39486)
Typed events for db:add-missing-… (server#39487)
Fix(apps): Fix loading info.xml file (server#39490)
Fix(caldav): Assign initial value to typed CalendarQuery properties (server#39504)
Feat(db): Ensure that index names are unique across the database (server#39506)
Fix(utility): De- deprecate getDateTime and getTime as now() only returns DateTimeImmutable (server#39511)
Fix(CardDAV): set owner-principal, displayname properties for SAB (server#39525)
Only show weather credits if necessary (server#39527)
Kerberos sso ci fix (server#39531)
`/ocs/v1.php/cloud/groups` `UPDATE` method – correct status when group not found (server#39537)
Update to nextcloud-vue 8 (beta) (server#39540)
AI admin settings (server#39567)
Calendar optimizations (server#39568)
Move lib/ events to IEventDispatcher where possible (server#39571)
OCM Services (server#39574)
“Allow untested app” wording (server#39575)
[f2v] feat(files_external): migrate to vue (server#39577)
Simplify IP address normalizer with IP masks (server#39582)
Feat(settings): Show supported apps on app settings if subscribed (server#39586)
Bump deepdiver1975/tarstreamer to 2.1.0 in master (server#39587)
Fix(files): url used to retrive storage stats (server#39588)
Fix!: Remove symfony EventDispatcherInterface from OC\User and OC\Group (server#39595)
Fix(l10n): Password column header (server#39599)
Fix!: Final round of moving to IEventDispatcher (server#39605)
Fix(files): Remove duplicated outline on file name of vue file list (server#39609)
Feat(files): migrate recent view (server#39613)
Remove litmus locks tests (server#39626)
Enable litmus largefile tests (server#39628)
Fix(s3): add SSE-C parameters to headObject call (server#39629)
Core: Document text processing API (server#39634)
Fix OpenAPI specs (server#39641)
Fix: copy-and-delete fallback should use unlink (server#39644)
Fix(files_sharing): String translations (server#39649)
Feat: File reminders backend (server#39651)
Fixes in update-3rdparty command (server#39652)
AppEcosystem Authentification (server#39655)
[master] fix(files): fix extension with custom displayName (server#39656)
Bump oc_version to 28.0.0.1 (server#39660)
Chore(3rdparty): update symfony/mailer to 5.4.22 (server#39662)
Fix(dav): use quota of destination in s3 chunk upload (server#39672)
Feat(theming): add mime accept in Theming image file picker (server#39673)
New OCS endpoint to list text processing tasks (server#39680)
Fix(cypress): Flaky tests (server#39682)
Fix: missing argument for TextProcessing Manager (server#39684)
Feat: Set file reminders (server#39685)
Fix(core): Modernize JS for mimetype handling (server#39686)
Fix(notifications): Remove share notification when the node is deleted (server#39689)
Re-enable download configuration on circles shares (server#39693)
Expose gps data via webdav (server#39694)
Refactors files version app commands. (server#39695)
Chore: add pr-feedback workflow (server#39696)
Catch more invalid cache source storage paths (server#39698)
Hide shares by disabled users (server#39699)
Fix: close cursor after reading the invitation (server#39700)
Fix: adjust test for font icon (server#39705)
Allow ext storage Local to go unavailable (server#39707)
[master] Update psalm-baseline.xml (server#39708)
Remove padding for longer wordings (like the future French one) (server#39713)
Update blog URL (formerly “/news”) (server#39715)
Add OpenAPI CI (server#39716)
Files_external: Fix OpenAPI (server#39717)
Chore(deps-dev): Bump symfony/event-dispatcher from 5.4.22 to 5.4.26 in /build/integration (server#39720)
Chore: remove version check for apc extension (server#39723)
[master] Update psalm-baseline.xml (server#39727)
Fix(db): Print why the migration file could not be created (server#39739)
Optimize calendar search query (server#39741)
Fix: Don’t try to access null array (server#39743)
Feat(caldav): linkify location in scheduling mails (server#39753)
“Download and enable all” instead of “Enable all” only (server#39754)
Add endpoint for getting disabled user list (server#39756)
Fix: always use display name from correct backend (server#39770)
Test: remove broken steps from files acceptance test (server#39778)
Log imaginary errors as info to not spam the server logs (server#39780)
Fix: Also cleanup version metadata if expiring (server#39786)
Fix: Pass proper viewer filename (server#39789)
Feat: Add new Vue FilePicker from `@nextcloud/dialogs` and use it by default (server#39792)
Enh(files_reminders): Adjust reminder options (server#39798)
Fix(updatenotification): Skip update check (server#39806)
Feat(f2v): migrate Files (server#39808)
Fix text processing OpenAPI (server#39809)
Let `occ trashbin:restore` restore also from groupfolders and add filters (server#39818)
Add l10n for files_reminders (server#39820)
Chore(deps-dev): Bump puppeteer from 20.9.0 to 21.0.3 (server#39833)
Chore(deps-dev): Bump eslint-plugin-cypress from 2.13.3 to 2.14.0 (server#39834)
Chore(deps-dev): Bump @vue/vue2-jest from 29.2.4 to 29.2.5 (server#39835)
Chore(deps-dev): Bump @babel/node from 7.22.6 to 7.22.10 (server#39836)
Fix: encode basename in restore action (server#39842)
Remove check for very old PGsql version (server#39846)
Wrap long productName on login form (server#39848)
Code simplification using null coalescing (server#39850)
Stop sending deprecated Pragma header (server#39852)
Feat(testing): Add fake providers for translations and text processing (server#39856)
Don’t preload metadata for the sub-childen (server#39860)
Move share permission logic to storage wrapper (server#39863)
Reuse l10n and request in dav folder listing (server#39864)
Fix php 8.3 support in tests (server#39866)
Add a separate event for login page rendering (server#39867)
Remove query builder reuse in files_external (server#39868)
Feat(security): Add a bruteforce protection backend base on memcache (server#39870)
Fix various file reminders bugs (server#39876)
Adjust add button (server#39884)
Bump Hub 5 -> Hub 6 (server#39885)
Reduce the number of container queries (server#39888)
Admin have no special rights on users’ entries (server#39895)
Sharebymail: remove ILogger and upgrade to PHP 8 syntax (server#39897)
Don’t bother checking dav acl’s in files (server#39903)
Prevent PHP warning when CacheEntry extension keys are not set (server#39906)
Fix(settings): focus lost on selects in users settings (server#39909)
Fix(memcache): Fix comparison of Memcache configs to classes (server#39910)
Fix(CardDAV): only run upgrade sync if 1000 users or less (server#39911)
Improve upload progress visualization (server#39912)
Try to fix regression with public file upload button (server#39916)
Chore(deps): Bump marked from 5.1.2 to 7.0.3 (server#39922)
Fix: Set X-Requested-With header on all requests to avoid browser auth dialogs (server#39924)
Fix(CardDAV): allow disabling of the system address book (server#39925)
A better design for update channel selector (server#39927)
Feat(dashboard): implement widget item api v2 (server#39937)
Chore(deps): Bump libphonenumber-js from 1.10.38 to 1.10.41 (server#39938)
Fix(settings): User management app navigation styles (server#39943)
Pass the share to the cache instead of having to ask the storage (server#39944)
Feat(files): add uploader (server#39945)
Fix: Avoid throwing on folder previews as there are none (server#39950)
Chore: use Navigation and Actions from `@nextcloud/files` (server#39955)
Improve performance of calculating dav permissions (server#39958)
Fix(CS): Use the naming pattern for the URL scheme (server#39961)
Chore(deps): Bump camelcase from 6.3.0 to 8.0.0 (server#39964)
Chore(deps-dev): Bump cypress from 12.17.3 to 12.17.4 (server#39965)
Chore(deps-dev): Bump sass from 1.64.2 to 1.66.1 (server#39967)
Chore(deps): Bump nextcloud-vue-collections from 0.10.0 to 0.11.1 (server#39968)
Fix(a11y): Add always visible label when setting weather address (server#39971)
Chore(deps): Bump peter-evans/create-pull-request from 3 to 5 (server#39972)
Chore(deps): Bump actions/setup-node from 3.6.0 to 3.8.1 (server#39974)
Chore(deps): Bump actions/github-script from 5 to 6 (server#39975)
Chore(deps): Bump actions/stale from 5 to 8 (server#39976)
(config sample) Remove defunct trystack.org url (server#39978)
[master] Fix npm audit (server#39979)
Files_reminders: Add OpenAPI spec (server#39984)
Fix predefined status buttons (server#39987)
Fix(CS): Ignore apps*/ directories which are gitignored (server#39989)
Fix(middleware): Fix header injection for bruteforce middleware (server#39996)
Feat(files): add drag and drop support (server#39998)
Chore(deps): upgrade `@nextcloud/webpack-vue-config` and `typescript` (server#39999)
Fix OpenAPI capabilities (server#40001)
[master] fix(security): Update CA certificate bundle (server#40005)
Fix(tests): Specify all positional parameters again to fix tests (server#40012)
Do not log passwords in debug mode (server#40013)
Create right table view (server#40014)
Feat: Add auth token list and delete commands (server#40026)
(enh) Change `occ background-job:list` limit default 10->500 (server#40042)
Replace custom input field with NcTextField (server#40043)
Add Altahrïm as code owner for login routes and sharebymail app (server#40044)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.10 to 9.6.11 in /build/integration (server#40052)
Chore(deps): Bump jquery from 3.6.4 to 3.7.0 (server#40054)
Chore(deps-dev): Bump @babel/preset-typescript from 7.22.5 to 7.22.11 (server#40055)
Chore(deps-dev): Bump babel-jest from 29.6.2 to 29.6.4 (server#40057)
Fix(files): do not load legacy files app js (server#40065)
Fix: make cancelOperation public (server#40067)
[Devcontainer] move git setup to postStartCommand (server#40068)
Fix(updatecheck): Don’t wait 120s for a response of updater.nextcloud… (server#40071)
Fix(API): Fix parameter name to match interface (server#40075)
Fix(cache): Remove displayname cache entry on delete (server#40077)
Techdebt(DI): Use public IThrottler interface which exists since 25 (server#40079)
Bump @nextcloud/vue to v8 beta 5 + add some visible labels (server#40084)
Adjust input field for “rename group” (server#40087)
Replace custom input field with NcTextField (server#40100)
Replace custom input field with NcTextField (server#40102)
Enable caldav push notifications by default (server#40103)
Feat: add switch to disable dns pinning (server#40108)
Enh(settings): Add and remove groups accessibly (server#40110)
Refactor `OC\Server::getAvatarManager` (server#40114)
Fix(CI): Update .drone.yml signature (server#40159)
Enh(a11y): Add accessible user menu semantics (server#40168)
Fix(CI): Fix server setup in cypress by overwriting all files in shal… (server#40181)
Test(sharebymail): Improve tests (server#40182)
SFTP improvements (server#40183)
Feat: Add events for version restore (server#40184)
[master] Update psalm-baseline.xml (server#40189)
Feat(files): add sharing icon in header (server#40192)
Fix: prevent sharing permissions on user root folder (server#40195)
Create right list view for app store view (server#40198)
Remove old fileUploadSpec jsunit test and fix flaky cypress files test (server#40199)
Change proftpd ci image (server#40201)
Fix(mimetype): Fix aborted transaction on PostgreSQL when storing mimetype (server#40203)
Feat(files): add folder icon overlay (server#40209)
Chore(deps-dev): Bump @cypress/webpack-preprocessor from 5.17.1 to 6.0.0 (server#40210)
Chore(deps): Bump webdav from 5.2.3 to 5.3.0 (server#40211)
Chore(deps): Bump @nextcloud/browserslist-config from 2.3.0 to 3.0.0 (server#40213)
Chore(deps-dev): Bump guzzlehttp/guzzle from 7.6.1 to 7.8.0 in /build/integration (server#40214)
Print log message when version could not be got from updater server (server#40216)
Fixn): Fixed grammar (server#40217)
ProfileApi: Fix typo (server#40224)
Enh: skip processing for empty response (server#40234)
Comments: Ignore endpoints in OpenAPI (server#40257)
40172 Polish new sharing flow : accesibility, expand bahavior, click outside behaviour (server#40266)
Fix(files_sharing): select sharing in sidebar breaks Viewer focus trap (server#40273)
Change order of keyboard shortcuts settings to be at the end (server#40275)
[f2v] Render inline system tags using new DAV properties API (server#40284)
Detect aborted connection in OC\Files\View and stop writing data to t… (server#40285)
Feat(appframework): Expose programmatic rate limiter (server#40288)
Fix(CalDAV): check birthday calendar owner (server#40292)
Fix(ratelimit): Only use memory cache backend for redis (server#40293)
Fix(comments): move new comment instructions placeholder to description (server#40294)
Rename AppEcosystemV2 to AppAPI (server#40295)
Enable new versions feature for groupfolders (server#40296)
Fix(caldav): add webroot to objectid for activities (server#40301)
Remove quotation marks (server#40306)
Fix: Pass parent to NonExistingFile instances (server#40312)
Enh(a11y): Add search contacts label (server#40314)
Feat: Add dedicated method to load init scripts (server#40323)
Implement TextToImage OCP API (server#40326)
Fix Admin AI settings javascript error (server#40328)
Theming: Revert broken SVG optimization in default-source.svg (server#40329)
Fix access to fileInfo in VersionTab.vue (server#40340)
Fix: Hide set reminder action on public shares (server#40341)
Fix: Update file list headers on breadcrumb navigation (server#40345)
Fix(autoloader): no apcu no side effects (server#40349)
Chore(deps): Bump @vueuse/components from 10.3.0 to 10.4.1 (server#40354)
Chore(deps): Bump cypress-io/github-action from 5.8.3 to 6.5.0 (server#40355)
Chore(deps): Bump actions/upload-artifact from 3.1.2 to 3.1.3 (server#40356)
Chore(deps): Bump actions/checkout from 3 to 4 (server#40357)
[master] Update psalm-baseline.xml (server#40358)
[master] Fix npm audit (server#40360)
Hide additional content when share details is open (server#40365)
Fire group membership events from LDAP at login (server#40367)
Feat: update sign up link in share pages (server#40368)
40172 polish sharing flow bugs (server#40372)
Test: add tests for dns pin middleware (server#40376)
Add plus icon to new user button (server#40378)
Fix invite guest for new sharing flow (server#40389)
Fix(settings): Undefined user count error (server#40391)
Display user status by the side in sharing flow (server#40393)
Ellipsize user status in sharing entry (server#40404)
Refactor(f2v): Migrate unread comments action to the new FileAction API (server#40409)
Use t and n for translation (server#40411)
Add in:users as a search filter to limit searches to users (server#40413)
Fix: use faster method to fetch user count (server#40416)
Fix: don’t use davtags for tag search (server#40418)
Remove deprecated at matcher in tests/lib/InstallerTest.php (server#40419)
Remove last calls to deprecated at matcher in tests/Core (server#40420)
Core: Fix OpenAPI for reference API (server#40421)
Enh(db): provide database providers via IDB API (server#40423)
Remove last at matcher call in dav application tests (server#40424)
Provisioning_api: Fix quota constants in OpenAPI (server#40426)
Multiple bug fix in users list (server#40428)
Enh(a11y): Add label to share note textbox (server#40430)
Correctly switch/revert from custom to bundled perms (server#40434)
Make logo in header clickable in the shared file view (server#40439)
Consider link shares in removeShare method in SharingTab (server#40440)
Fix(ldap): store last known user groups (server#40443)
Chore(deps): Bump @nextcloud/dialogs from 5.0.0-beta.2 to 5.0.0-beta.4 (server#40452)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.10 to 9.6.12 in /build/integration (server#40455)
Refactor: Replace array_search with in_array in lib/ (server#40462)
Fix(files): CustomElementRender $el replacement bug (server#40465)
Bump phpseclib/phpseclib to 2.0.45 in master (server#40470)
Only add x-requested-with header in requests to Nextcloud (server#40471)
Fix(twofactor): avoid DB error on Twofactor (en/dis)abled event (server#40472)
Fix(dav): report status (server#40474)
Feat(files): add systemtags view (server#40475)
Add method to create a node from cache entry + mountpoint (server#40478)
Fixes Dashboard icon rendering in darkmode (server#40480)
Fix: content info footer on guest pages (server#40481)
Fix(isLegitimatedForUserId): Setup mountpoints to check file access (server#40482)
Fix(dav): fix report tests (server#40485)
Fix(comments): Use provided offset in best effort when loading comments (server#40488)
Load script and styles on setup page (server#40494)
Fix(sharing): set name to target name in sharing cache (server#40495)
Chore(deps-dev): Bump @vue/vue2-jest from 29.2.4 to 29.2.6 (server#40496)
Add wrapper for external storage to ensure we don’t get an mtime that is lower than we know it is (server#40499)
Consider share type for enforced share expiry dates (server#40500)
Store size in int|float for 32bit support (server#40501)
Add single status code descriptions for OpenAPI (server#40502)
Remove deprectated ILogger uses from user_ldap application (server#40504)
Chore(3rdparty): remove opis/closure (server#40505)
Migrate applications away from deprecated ILogger (server#40508)
Fix dashboard widgets api (server#40511)
Fix: redirect to proper directory if file not found (server#40515)
Remove ‘Working with … code’ sections from README.md (server#40516)
Feat(files): add files_sharing indicator (server#40517)
Use multipart copy for s3 (server#40531)
Auto set password for new email shares (server#40533)
Fix(dav): expand recurrences when searching (server#40541)
Add label for input field and select and adjust styles (server#40548)
Fix: avoid side-effect imports and actions title support (server#40551)
Add labels for input fields (server#40552)
Style: Fix editorconfig indent for config/*config.php (server#40562)
Update crl after revoke mfazones.csr (server#40563)
Fix(userstatus): Track message timestamp too (server#40564)
Remove deprecated methods Util::writeLog and DIContainer::log (server#40565)
Feat(CI): Allow apps to test with PHPUnit10 (server#40574)
Core: Fix OCM OpenAPI (server#40575)
Split list to navigation for the left sidebar (server#40576)
Feat(files): properly format buttons, align mtime to the left and apply opacity based on file last modification (server#40583)
Correct value for device name input field (server#40584)
Fix(files): disallow illegal characters (server#40585)
Ci: skip cypress install (server#40589)
Chore(deps): Bump actions/checkout from 3 to 4 (server#40595)
Fix(theming): Make sure the footer is hidden if no content is rendered (server#40597)
Chore(deps): Bump marked from 7.0.3 to 9.0.3 (server#40598)
Fix(files): open folder fileid while navigating without opening the sidebar (server#40604)
Remove unneeded opacity for action button (server#40613)
Fix(userstatus): Sync migration version number with app version (server#40614)
Feat(user status): automate user status for events (server#40615)
Read apporder from configuration value (server#40617)
Advanced search: backend allows multiples terms to search (server#40618)
Use proper app id in Version.vue (server#40619)
Feat(phonenumber): Add OCP wrapper for PhoneNumber utils library (server#40620)
Fix(build): Ignore `default-source.svg` from image optimization (server#40622)
Updates to new sharing flow (server#40629)
Allow PHP 8.3 (server#40630)
Chore: Drop vendored Composer v2.4.1 (server#40639)
Set visible label for input field (server#40643)
Fix: encode uri for delete, restore and favorite (server#40644)
Fix OCS-APIRequest header for OpenAPI (server#40649)
Refactor: Use DBAL’s executeQuery instead of query (deprecated) (server#40651)
Feat: Add out-of-office message API (server#40653)
Feat(backgroundjob): Schedule job after (server#40656)
Fix(autocomplete): Fix missing user status on autocomplete endpoint (server#40660)
Correct `aria-label` on action input and text field (server#40662)
Fix(dav): Reduce CalDAV backend memory footprint (server#40665)
Feat: allow external drop and add dropzone (server#40674)
Fix(unifiedsearch): Allow searching for “0” (server#40675)
Fix(files): pass WCAG AA for hover rows (server#40677)
Chore: Install phpunit via vendor bin (server#40678)
Chore: Bump @nextcloud/vue + @nextcloud/dialogs + @nextcloud/calendar-availability-vue (server#40692)
Correct typos and add quotation marks (server#40698)
LDAP: Increase profile picture limit to 512 (server#40709)
Fix(systemreport): Mask onlyoffice secret as sensitive (server#40714)
Enh(settings): Semantic user table markup (server#40719)
Chore(deps-dev): Bump cypress and @nextcloud/cypress (server#40720)
Chore(deps-dev): Bump @jest/globals from 29.6.2 to 29.7.0 (server#40721)
Chore(deps-dev): Bump cypress-wait-until from 1.7.2 to 2.0.1 (server#40722)
Chore(deps-dev): Bump workbox-webpack-plugin from 6.6.0 to 7.0.0 (server#40724)
Generate all preview sizes for Imaginary (server#40731)
Ci: skip puppeteer chrome download (server#40733)
Chore: rename serializedClosure to argument to align with parent class (server#40734)
Test(cypress): only use the cypress cloud on pull requests (server#40736)
Added CORS skip if session was created by AppAPI (server#40737)
Remove unneeded class (server#40738)
Fix ocm-provider rewrite rules (server#40745)
Chore(deps): remove @nextcloud/vue-dashboard (server#40748)
Refactor: Contacts menu to Vue (server#40749)
Chore(deps): Bump core-js from 3.32.0 to 3.33.0 (server#40751)
Show loading icon in ‘save share’ button when creating a share (server#40752)
Fix(files): encoded source path on actions requests (server#40756)
IFilesMetadata (server#40761)
Chore: Do not lint external apps (server#40764)
Make OAuth2 authorization code expire (server#40766)
Feat(dav): implement personal absence settings (server#40767)
Fix(dashboard): remove duplicated IDs on the dashboard page (server#40768)
Fix(cypress): empty group, tag and ci-build-id when not using cypress cloud (server#40770)
Fix(files): migrate to NcIconSvgWrapper (server#40771)
Fix(theming): Ensure all text colors have enough contrast for accessibility (server#40773)
Fix(files_external): basic auth user storage trigger (server#40782)
Adjust color of focus-visible to be better visible (server#40783)
Move inline docs to online documentation (server#40784)
Fix: Log critical session renewal and logout paths (server#40785)
Fix(user): Log affected user of app token login name mismatch (server#40795)
Fix: Show error message when CSRF check fails at login (server#40799)
Fix text on default background image button (server#40804)
Chore(deps-dev): Bump @types/dockerode from 3.3.19 to 3.3.20 (server#40805)
Fix(L10N): Support “Accept-Language: zh-Hans-CN” and alike (server#40808)
Update README.md (server#40809)
Catch Imaginary processing errors (server#40819)
New UI global search (server#40823)
Fixed mixed translations in sharing details (server#40825)
Fix Dynamic property timeFactory in ClientFlowLoginControllerTest (server#40829)
Pass IConfig by constructor to Group_LDAP (server#40839)
Remove leading slash (server#40843)
Feat: Allow to configure the app menu order in the frontend (server#40844)
Feat(contactsmenu): Show user status (server#40852)
Feat(files): migrate template picker (server#40854)
Fix: Scope app nav caption styles (server#40858)
Fix(session): Log why session renewal failed (server#40859)
Chore: Drop unused \OC\Memcache\Factory::createLowLatency (server#40861)
Fix(federation): Use `sharing.federation.allowSelfSignedCertificates` config for all OCM requests (server#40864)
Fix version number in ITimeFactory after it was delayed (server#40865)
Feat: Add factory method for in-memory caches (server#40868)
Fix my-apps view on mobile (server#40871)
Change width for input field (server#40872)
Fix width of input on contacts menu (server#40873)
Chore(deps): Bump @nextcloud/password-confirmation from 4.0.1 to 5.0.0 (server#40874)
Fix(scheduling): don’t send iMIP emails to rooms / resources (server#40876)
Fix(session): Log when crypto session data is lost (server#40879)
Fix OCM provider public API and handling to allow apps to register (server#40885)
Fix several admin settings problems (server#40887)
Check for more php modules (server#40889)
Fix(search): Close unified search at the second ctrl+f (server#40890)
Enh(files): Add accessible sort direction (server#40893)
Fix(cypress): User groups test (server#40894)
Add custom apps translation scripts and image path for consistency (server#40898)
Refactor: Unify running a dev server (for automated testing) (server#40899)
Fix(docs): Fix parameter types in docs (server#40900)
Append to body all selects inside of user table (server#40902)
Reduce left margin of files list header (server#40905)
Fix several personal settings problems (server#40907)
Chore(deps-dev): Bump @babel/preset-typescript from 7.22.11 to 7.23.2 (server#40909)
Chore(deps-dev): Bump ts-loader from 9.4.4 to 9.5.0 (server#40910)
Chore(deps-dev): Bump tar from 6.1.15 to 6.2.0 (server#40911)
Chore(deps): Bump @mdi/svg from 7.2.96 to 7.3.67 (server#40912)
Chore(deps-dev): Bump dockerode from 3.3.5 to 4.0.0 (server#40913)
Chore(deps): Bump dompurify from 3.0.5 to 3.0.6 (server#40914)
Feat(files): grid view (server#40917)
[master] Fix npm audit (server#40923)
Shortcut Ctrl+F for different keyboard layouts (server#40924)
Config.sample.php: fix incorrect theme name + add a missing ones (server#40926)
Allow share expiry dates lower than enforced limits (server#40927)
Fix unit tests on PHP 8.3 (server#40931)
Fix profile visibility settings being too wide (server#40932)
Check expiry enforcement for all share types (server#40933)
Chore: Add the talk team as codeowners for things Talk heavily relies on (server#40934)
Add some support for rename on case insensitive local filesystems (server#40935)
Fix(settings): Account property scope actions (server#40938)
Chore(deps): Bump @babel/traverse from 7.22.8 to 7.23.2 (server#40941)
Fix(files): fix new folder encoding (server#40948)
Fix(theming): Add `aria-pressed` attribute to active background (server#40950)
Fix(xhr-request): Make sure to also allow strings as url (server#40951)
Chore(deps): Bump @nextcloud/dialogs to v5-beta.6 (server#40956)
Files-list: performance optimizations (server#40958)
Fix(dbal): Fix types in query builder methods for parameters (server#40959)
Fix(cypress): Replace flaky password-confirmation hack (server#40961)
Reduce width of sharing entry (server#40963)
Support dynamic metadata request on PROPFIND requests (server#40964)
Fix(federation): Fix type and docs on ICloudFederationNotification in… (server#40965)
Add “no public GH Issues please” request, past advisories link, bounty mention, scope link to security.md (server#40966)
Fix return type annotation of IShare::getExpirationDate (server#40969)
Update version.php to owncloud 10.13 (server#40977)
HTML Validation: replace non standard `autocorrect` with `spellcheck` (server#40978)
Fix placement of actions within unified search (server#40979)
HTML Validation: remove unnecessary roles (server#40980)
HTML Validation: Personal settings (server#40983)
Fix(tests): Only run tests on CI that are needed (server#40986)
Fix(weather_status): remove `li` wrapper (server#40992)
Refactor: remove remaining usage of OC::getCapabilities (server#40993)
Fix(user_menu): pass only actual prop to user menu entries (server#40994)
Optimize cache jail creation (server#40995)
Reuse sharing disabled state when listing folder content (server#40996)
Files: fix virtual list will-change value fps superpowers) (server#40999)
Fix(cypress): Also sync `3rdparty` directory for local cypress tests (server#41000)
Fix trusted server input field (server#41008)
Feat(files): support nested actions (server#41010)
Move IToken and IProvider::getToken to OCP (server#41017)
Fix(files): disable size containment on headers (server#41018)
Fix(files): correct item height (server#41019)
Fix(tests): Move leftover acceptance tests for users from drone to Cypress (server#41021)
Theming: Allow to reset custom app order and keep focus when reordering (server#41024)
Chore(deps): Bump peter-evans/create-or-update-comment from 3.0.2 to 3.1.0 (server#41026)
Chore(deps): Bump actions/checkout from 4.1.0 to 4.1.1 (server#41027)
Chore(deps-dev): Bump @types/dockerode from 3.3.20 to 3.3.21 (server#41028)
Chore(deps): Bump @nextcloud/calendar-availability-vue from 2.0.0-beta.2 to 2.0.0-beta.3 (server#41029)
Chore(deps-dev): Bump eslint-plugin-cypress from 2.14.0 to 2.15.1 (server#41030)
Chore(deps-dev): Bump typescript from 5.1.6 to 5.2.2 (server#41032)
Chore(tests): Migrate login acceptance tests from behat to Cypress (server#41033)
Fix(settings): users page html validation (server#41034)
Fix(settings): apps list html validation and loading icon (server#41035)
Fix(l10n): invalid translation of a number (server#41036)
Feat(cypress): Always run cypress CI in parallel (server#41039)
Fix(provisioning_api): Fix quota fields in OpenAPI (server#41045)
Fix: duplicating contacts with the Recently contacted feature (server#41046)
Feat(dav): implement personal absence settings backend (server#41051)
Fix(files_external): on case insensitive system, block case change (server#41053)
Get children from dav node when preloading system tags (server#41054)
Feat(profile): Add public interface for profile manager so apps can check config (server#41055)
Optimize UserMountCache::registerStorage (server#41057)
Fix(theming): Correctly expose user and admin theming (server#41059)
Fix(3rdparty): Don’t use indirect dependency “Safe/” for functions (server#41061)
Return correct status if touch failed (server#41062)
Fix(dashboard): html validation (server#41063)
Remove opacity on table header (server#41064)
Fix(user_status): separate user menu and dashboard status layout for HTML validation (server#41068)
Chore: Bump @nextcloud/vue to v8-beta.9 (server#41070)
Update openapi extractor (server#41078)
Fix(update): Allow updating from 27.1 to 28 (server#41079)
Change styles on active, hover and focus state for background buttons (server#41080)
Add a command to run the setup checks from CLI (server#41081)
Improve setup checks naming and improve database version check (server#41083)
Migrate memory_limit check to new SetupCheck API (server#41086)
Fix(workflowengine): Add an empty content when no flows are installed or configured (server#41089)
Fix(files): let popper overflow in header (server#41093)
Fix(dav): Remove usage of indirect thecodingmachine/safe dependency (server#41094)
#37978: Remove duplicate dependency (server#41101)
Remove unneeded `tabindex=”0″` from sidebar and app content (server#41108)
Fix(cypress): Fix selector for the user menu button (server#41110)
Add index for classification (server#41111)
Fix(cypress): Fix linter errors on Cypress chains and refactor `wait-until` checker functions (server#41115)
Fix(login): Fix JS error on login grant page (server#41117)
Optimize builtin storage wrappers (server#41119)
Fix: don’t pass invalid streams to Imaginary (server#41120)
Enh(a11y): Separate profile and user status user menu entries (server#41122)
Fix(external): Get storage before update it (server#41123)
Don’t duplicate notification warning (server#41133)
Migrate checks to new SetupCheck API (server#41134)
Fix(cypress): Also clone 3rdparty submodule to keep in sync for cypress tests (server#41135)
Chore(cypress): Migrate access-level tests from Behat to Cypress (server#41137)
Chore(codecov): Do not run project status check (server#41140)
Create semantically right table for the “OAuth 2.0 clients” (server#41142)
Chore(deps): bump browserify-sign from 4.2.1 to 4.2.2 (server#41148)
Chore(deps-dev): bump @testing-library/jest-dom from 5.17.0 to 6.1.4 (server#41163)
Chore(deps-dev): bump puppeteer from 21.0.3 to 21.4.1 (server#41164)
Chore(deps-dev): bump jest-environment-jsdom from 29.6.2 to 29.7.0 (server#41165)
Chore(deps): bump p-queue from 7.3.4 to 7.4.1 (server#41166)
Chore(deps): bump actions/setup-node from 3.8.1 to 4.0.0 (server#41168)
Chore(deps): bump actions/checkout from 3.6.0 to 4.1.1 (server#41169)
Fix: Delete ghost versions of non-existing files (server#41173)
Add OpenAPI attribute to allow multiple scopes (server#41175)
Reset BFP for sudo action (server#41177)
Chore(cypress): Migrate header contacts menu tests from Behat to Cypress (server#41190)
Ci: Turn off builds for pushes and merges to master/stable* and cancel parallel executions (server#41193)
Fix(theming): Ensure focus is kept on the button when reordering (server#41197)
Fix(theming): Add accessible information to app order settings (server#41199)
Talk now uses the “main” branch (server#41200)
Fix(a11y): Increase contrast of contacts menu actions (server#41207)
Fix(TextToImage): Consistently use the right method to get the preferred providers (server#41211)
Fix(install): Make installing more verbose (server#41214)
Feat(events): Add typed event for filtering autocompletion sugges… (server#41218)
Chore: 28.0.0 beta 1 (server#41228)
Fix: add index on migration only if needed (server#41230)
Fix(upgrade): files_rightclick is deprecated (server#41246)
Fix(cypress): Add timeout for waiting on Nextcloud server (server#41250)
Fix: Only highlight profile entry when viewing own profile (server#41251)
Add descriptions for background pictures (server#41256)
Fix semaphore unguarding (server#41263)
Feat(dependencyinjection): Allow optional (nullable) services (server#41265)
Feat(contactsmenu): Sort by user status (server#41266)
Fix styles for input fields on focus state (server#41270)
Enh(TextProcessing): Add two new provider interfaces (server#41271)
Chore(deps): Bump focus-trap from 7.5.2 to 7.5.4 (server#41275)
Chore(deps): Bump marked from 9.0.3 to 9.1.5 (server#41276)
Chore(deps): Bump @nextcloud/moment from 1.2.1 to 1.2.2 (server#41277)
Chore(deps): Bump @nextcloud/upload from 1.0.0-beta.18 to 1.0.0-beta.19 (server#41279)
Chore(deps-dev): Bump cypress from 13.3.0 to 13.4.0 (server#41280)
Chore(deps): Bump vue and vue-template-compiler (server#41281)
Chore(deps): Bump pinia from 2.1.6 to 2.1.7 (server#41282)
Chore(deps): Bump cypress-io/github-action from 6.5.0 to 6.6.0 (server#41283)
Fix(dav): Add ID / label to timezone picker in availablility settings (server#41285)
Update supported versions on issue template (server#41294)
Fix(JobList#hasReservedJob): Break tie when multiple jobs are reserved (server#41295)
Fix description of sharing toggle (server#41298)
Fix(files_sharing): fix sharing tab translations (server#41301)
Lower log level about invalid session token (server#41302)
Chore(cypress): Migrate apps acceptance tests to Cypress (server#41303)
Customize rendering for live photos (server#41308)
Improve setup checks API (server#41311)
Fix(session): Do not log fresh/empty session as error (server#41318)
Fix styles for input field and textarea on focus, hover and active state (server#41328)
Fix(files): Do not encode the path twice (and do not use undefined method) (server#41329)
Fix(files): add missing `Overwrite: F` header in renaming (server#41331)
Fix(LDAP): prevent incomplete displaynames… (server#41333)
Fix(component): utilized NcDateTime component (server#41334)
Enh(systemtags): Add accessible system tags form (server#41335)
Add two more translations for `CalendarAvailability` (server#41339)
Feat(caldav): Create personal event for out-of-office messages (server#41340)
Fix: Allow to set app order on navigation entries added by closures (server#41341)
Update `calendar-availability-vue` to `^2.0.0` (server#41348)
Fix(settings): Pass user object to user row actions (server#41349)
Fix(migration): Fix files metadata migration (server#41351)
Fix: Validate that we have a proper distributed cache configured (server#41354)
Chore: Update nextcloud dependencies to stable version (server#41355)
Fix(events): Make sure all `\OCP\Files::…` events are emitted with th… (server#41365)
Fix(s3): support SSE-C headers for the MultipartCopy call (server#41366)
Feat(search): Seach for persons as event attendees and organizers (server#41374)
Enhancements : improve most recent global search UI (server#41384)
Chore/update twitter to x in personal settings (server#41385)
Fix(cypress): Do not install calendar app from app store for testing (server#41387)
Chore(deps): Bump @vueuse/integrations from 10.5.0 to 10.6.0 (server#41389)
Metadata must be set a editable for PROPPATCH (server#41390)
Chore(deps): Bump regenerator-runtime from 0.13.11 to 0.14.0 (server#41391)
Feat: add preview provider for emf files based on office (server#41395)
Fix(cypress): Adjust admin theming tests for new `@nextcloud/vue` release (server#41398)
Fix(cypress): Make new-users test less flaky by using test isolation (server#41399)
Chore: update sabre/vobject and sabre/event to latest minor (server#41401)
Fix(workflow): Fix “Call to a member function getUID() on null” with … (server#41404)
Close participants filter after click (server#41405)
Fix(log): Log exception class when message is empty (server#41406)
Fix(userstatus): Do not override message timestamp for default messages (server#41407)
Fix default icon: should be white instead of black (server#41412)
Fix apps search provider order (server#41413)
Fix dynamic property in CalDav tests (server#41415)
Fix: Only reset preview src if it used to fail before (server#41416)
Fix(workflowengine): use andWhere() not second where() (server#41417)
Use background to increase overlay contrast (server#41426)
Fix search providers icons (server#41432)
Migrate bruteforce throttle check (server#41435)
Add `inAppSearch` for advanced search providers (server#41436)
Migrate forwarded for headers check (server#41438)
Add link for opening app details (server#41439)
Ignore metadata if migration to 28 is not done (server#41442)
Fix(files): Show Collectives icon in Collectives folders (server#41443)
Fix: Change scroll container for sharing details (server#41444)
Moving IMetadataQuery (server#41446)
Fix(backupcodes): Remove old notifications before creating a new remi… (server#41447)
Improve shared status button (server#41453)
Fix(files): Use `color-primary-element-text` for files/folders overlay icons (server#41455)
Feat(search): allow contacts person search (server#41457)
Implements search on null/notnull metadata (server#41459)
Migrate old metadata table to the new ones (server#41465)
Chore: Update `@nextcloud/vue` (server#41472)
Adapt “advanced settings” button for accordion button (server#41473)
Refactor(carddav): Use even earlier return and SQL’s WHERE IN (server#41474)
Fix: Add docxf/oform to mimetypemapping (server#41475)
Enh/beta improvements (server#41481)
Fix(files): Sort list ASC by default (server#41485)
Fix invalid users/groups handling in advanced search (server#41486)
Move delete share button into the scrolling container (server#41489)
Feat(comments): Plug in comments into activity sidebar tab if available (server#41491)
Fix(ocp): register IAvailabilityCoordinator service alias (server#41495)
Bump @nextcloud/dialogs to v5.0.1 (server#41497)
Feat(dav): Enable OOO UI and expose enabled via OCP (server#41501)
Correct spelling (server#41506)
Enhancements: Fix and updates to most recent global search UI (server#41507)
Enhancements for advanced search API (server#41511)
Fix(userstatus): Only track message timestamp for values (server#41512)
Fix(files_versions): don’t call getUid() on null (server#41518)
Fix(files): Ensure folders and favorites are sorted first regardless of sorting mode (server#41519)
Finish password confirmation (server#41520)
Reverse X-Forwarded-For list to read the correct proxy remote address (server#41526)
Add metadata generation job (server#41540)
Serve .flac audio files (server#41541)
Do not write htaccess file if disk space is too low (server#41544)
Bump Hub 6 -> Hub 7 (server#41555)
Fix(a11y): Focus on sharing quick permission radio (server#41560)
Fix(settings): User row text field styles (server#41561)
Fix(ObjectStore): Make copying behavior consistent with local storage (server#41565)
Fix(2fa-backupcodes): Don’t remember disabled and deleted users over … (server#41569)
Allow setting `strict-dynamic` on `strict-src-elem` and set it by default (server#41571)
Fix(files): avoid sending thumbnail URL for directory as none exists (server#41573)
Fix: Avoid invisible areas through keyboard navigation (server#41575)
Fix(files): make files list valid table layout (server#41577)
Fix: Be less strict about action exec return value (server#41579)
Replace ActionLink with ActionButton on sharing tab (server#41580)
Enh(settings): Migrate admin settings for sharing to vue (server#41581)
Fix(CSP): Only add `strict-dynamic` when using nonce (server#41583)
Chore: Update `@nextcloud/vue` to 8.2.0 (server#41584)
Chore: Bump @nextcloud/dialogs to v5.0.2 (server#41585)
Chore(deps): Bump actions/github-script from 6 to 7 (server#41594)
Add named metadata event (server#41601)
[master] Fix npm audit (server#41603)
Fix: Fix linkToOCSRouteAbsolute() without index.php and with subfolder (server#41616)
Handle error in previews for files versions (server#41617)
Fix: Also cleanup orphaned shares user cannot be found anymore (server#41623)
Chore: Bump @nextcloud/upload to 1.0.1 (server#41624)
Listen to cache event when deleting metadata (server#41634)
Fix(theming): Adjust config listener to validate `apporder` config also for closure navigation (server#41635)
Fix sharing settings unit tests (server#41637)
Replace input form with `NcTextField` (server#41638)
Fix(user_status): remove border from emoji picker (server#41641)
Correct spelling of Brute Force and other fixes (server#41642)
Feat(search): hide search provider from list (server#41646)
Trigger default action when open file initial state is set (server#41648)
Fix: lower threshold for system address book sync (server#41649)
Get sync_token on retrieveMetadata() (server#41653)
Accept boolean value (server#41655)
Show shared label only if the current user have shared the file. (server#41656)
Chore(settings): Cleanup IManager and Manager type annotations (server#41662)
Add quotation marks (server#41666)
Test boolean favorite (server#41668)
Correct spelling (server#41673)
Fix(reminder): Fix app version and requirement for files_reminder app (server#41676)
Test against stable28 branches (server#41679)
Replace “Update” with “Edit” in advanced share settings (server#41691)
Fix star stroke color on hover (server#41692)
Add app-based filtering to global search (server#41700)
Feat(dav): dispatch out-of-office started and ended events (server#41701)
Focus global search input on open (server#41706)
Fix(core): Subscribe to navigation changes on mounted for Unified search (server#41708)
Fix(files): Use SVG as FilePicker buttons to bring back icons (server#41715)
Remove unneeded links and add `focus-visible` state on a link (server#41716)
Fix(dav): Avoid date diffing if PHP is buggy (server#41726)
Fix adding x-requested-with header for relative URLs in some cases (server#41732)
Fix action button labels (server#41733)
Confirm content on dav-v2 test (server#41741)
Ensure share has download permissions in F2V (server#41742)
Fix(setupcheck): Fix memory limit setup check (server#41757)
Fix(security): Update expiration date in security.txt (server#41761)
Fix(files_versions): Check for user and owner before call getUserFolder (server#41783)
Fix(files): Empty files list when uid contains special chars (server#41784)
Enh(userstatus): add OOO automation and remove calendar automation (server#41798)
Spelling correction (server#41807)
Fix(dav): don’t schedule out-of-office jobs for dates in the past (server#41811)
Fix: Hidden password confirmation dialog with new global search (server#41815)
Fix(dav): Make ooo settings a form and the message required (server#41817)
Feat(dav): hide search providers if their respective app is not activated (server#41837)
Fix(OOO): Make the returned data more explicit (server#41845)
Fix: add mimetype for eml and msg (server#41868)
Fix(dav): Convert dates without tz drift (server#41873)
Fix(dav): Prioritize timezone from core/login (server#41886)
Update @nextcloud/upload to 1.0.2 (server#41912)
Fix(theming): Fix color inverted icons based on theming and dark mode (server#41920)
Synchronize operation on live photo files (server#41921)
UI updates for global search (server#41925)
Always emit search event (server#41926)
Migrate openResult method to SearchResult component (server#41929)
Handle close GlobalSearchModal gracefully #41792 (server#41930)
Fix(core): app icon alignment in app menu (server#41932)
Enable new global search by default #41729 (server#41933)
Improve share logic for enforced password & expiry date (server#41934)
Add comment in SyncLivePhotosListener (server#41941)
Update `@nextcloud/vue` to 8.3.0 (server#41943)
Fix(cypress): Adjust user columns tests (server#41945)
Enh(settings): Load from disabled users endpoint (server#41949)
Fix(files_external): Fix “Could not find resource main.js to load” (server#41955)
Fix(copyright): Fix copyright doc blocks (server#41956)
Fix(CI): Fix video verification tests (server#41960)
Feat(out-of-office): Add OCS endpoint to set and clear absence (server#41963)
Fix(dav): Allow single-day out of office (server#41967)
Fix(TextProcessing): Add task type template param to IManager and registerTPProvider (server#41969)
Fix(files): Adjust table header to look like on previous versions (server#41976)
Fix(files): Move aria-label for favorite icon from span to icon (server#41978)
Fix npm audit (server#41983)
Fix(files): Reverse logic to prevent copy to itself (server#41989)
Fix(files): Allow to drag and drop new files also on empty directories (server#41990)
Fix(files): Remove confusing table header labels (server#41991)
Fix(TemplateManager): Bail early if templatedirectory is empty (server#42000)
Fix(security): Handle idn_to_utf8 returning false (server#42005)
Fix(metadata): Allow to load metadata of multiple files at once (server#42010)
Migrate database missing checks (server#42013)
Fix(dav): allow any throwable in logException (server#42014)
Feat(LDAP): implement IIsAdmin interface (server#42017)
Fix: Properly take show_hidden user setting into account for file listing (server#42023)
Files_metadata_installed (server#42026)
Fix(dav): Make current ooo info time-dependent (server#42029)
Fix(UnifiedSearch): Move headings out of list element (invalid HTML) (server#42032)
Fix AppSettingsController.php overwriting currentLanguage (server#42050)
Chore: Update `@nextcloud/dialogs` to version 5.0.3 (server#42057)
Fix look of personal global credentials settings (server#42058)
Fix(theming): Adjust dark theme to be accessible adjust cypress tests (server#42069)
Fix(files): Correctly handle dropping folders on file list (server#42071)
Correct semantics for link opening in global search (server#42073)
Fix: Properly fetch version from shared files by accessing the owner storage version (server#42074)
Fix some silent share bugs (server#42076)
Fix(bruteforce-protection): Don’t throw a 500 when MaxDelayReached is… (server#42082)
Fix(dav): Improve handling and logging of bulk upload failures (server#42087)
Enh(NavigationManager): Use ID as fallback for `app` property of entries (server#42088)
Enh(a11y): Add navigation labels (server#42089)
Fix: Adjust reference picker code for the vue based FilePicker (server#42103)
Change global search UI text to unified search (server#42105)
Fix(core): add translations on the login page (server#42113)
Chore(deps): Update openapi-extractor (server#42119)
Fix(l10n): fix translations for init scripts (server#42122)
Fix rename on live photos (server#42159)
Fix(dav): Prevent out-of-office event time drifts (server#42163)
Revert “fix(dav): Prevent out-of-office event time drifts” (server#42164)
Improvements at documentation (3rdparty#1352)
Chore: update workflows from templates (3rdparty#1419)
Feat: add wapmorgan/mp3info and id3parser (3rdparty#1420)
Chore(libphonenumber): Bump giggsey/libphonenumber-for-php to giggsey… (3rdparty#1421)
Chore(deps): Drop swiftmailer/swiftmailer (3rdparty#1422)
Fix(deps): Upgrade symfony/event-dispatcher to supported version 5.4.26 (3rdparty#1423)
Chore(deps): Bump doctrine/dbal to 3.7.x (3rdparty#1424)
Chore: update workflows from templates (3rdparty#1425)
Bump sabre/http to 5.1.7 in master (3rdparty#1452)
Chore: enable dependabot for stable27 (3rdparty#1461)
Chore: update cweagans/composer-patches to 1.7.3 (3rdparty#1479)
Chore: update symfony/process to 5.4.24 (3rdparty#1480)
Chore: update symfony/console to 5.4.24 (3rdparty#1481)
Chore: update http-foundation, routing and translation to 5.4.24 (3rdparty#1482)
Chore: update symfony/mailer to 5.4.22 (3rdparty#1483)
Chore: update punic to 3.8.1 (3rdparty#1484)
Bump deepdiver1975/tarstreamer to 2.1.0 in master (3rdparty#1491)
Remove stable24 from dependabot (3rdparty#1551)
No longer ignore symfony 5.x (3rdparty#1552)
Bump phpseclib/phpseclib to 2.0.45 in master (3rdparty#1579)
Chore: remove opis/closure (3rdparty#1580)
Fix(CI): Reduce dependabot update-types (3rdparty#1606)
Chore: update sabre/vobject and sabre/event to latest minor (3rdparty#1641)
Bump icewind/searchdav to 3.1.0 in master (3rdparty#1643)
Adding the Auto-Submitted header for notification mails (activity#1041)
Groupfolder activities on move/rename (activity#1163)
Chore(deps-dev): Bump @vue/tsconfig from 0.1.3 to 0.4.0 (activity#1184)
Chore(deps): Bump @nextcloud/auth from 2.0.0 to 2.1.0 (activity#1191)
Chore(deps-dev): Bump vimeo/psalm from 5.9.0 to 5.12.0 (activity#1192)
Chore(deps-dev): Bump @types/dockerode from 3.3.17 to 3.3.18 (activity#1193)
Chore(deps-dev): Bump nextcloud/coding-standard from 1.0.0 to 1.1.1 (activity#1198)
Chore(deps-dev): Bump @types/jest from 29.5.1 to 29.5.2 (activity#1209)
Chore(deps-dev): Bump @vue/test-utils from 1.3.5 to 1.3.6 (activity#1213)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.8 to 9.6.9 (activity#1215)
Chore(deps): Bump @nextcloud/vue from 7.11.4 to 7.12.0 (activity#1216)
Chore(deps): Bump @nextcloud/router from 2.0.0 to 2.1.2 (activity#1219)
Chore(deps-dev): Bump cypress from 12.12.0 to 12.15.0 (activity#1226)
Chore(deps-dev): Bump @nextcloud/webpack-vue-config from 5.3.0 to 5.5.1 (activity#1227)
Chore(deps): Bump @nextcloud/l10n from 1.6.0 to 2.2.0 (activity#1228)
Chore(deps): Bump @nextcloud/dialogs from 3.2.0 to 4.1.0 (activity#1229)
Add more aria attributes to activity-settings button (activity#1230)
Remove unneeded margin after paragraphs (activity#1231)
Updating cypress.yml workflow from template (activity#1232)
Revert: cypress undefined component test (activity#1233)
Chore(deps-dev): Bump vimeo/psalm from 5.12.0 to 5.13.1 (activity#1235)
Chore(deps-dev): Bump @types/dockerode from 3.3.18 to 3.3.19 (activity#1236)
Chore(deps-dev): Bump cypress from 12.15.0 to 12.16.0 (activity#1237)
Chore(deps-dev): Bump typescript from 5.1.5 to 5.1.6 (activity#1238)
Chore(deps-dev): Bump tslib from 2.5.0 to 2.6.0 (activity#1239)
[master] Fix npm audit (activity#1244)
Create pr-feedback.yml (activity#1246)
Re-add templates.js (activity#1247)
[master] Fix npm audit (activity#1250)
Migrate activity app from ILogger (activity#1251)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.9 to 9.6.10 (activity#1253)
Chore(deps-dev): Bump @types/jest from 29.5.2 to 29.5.3 (activity#1254)
Chore(deps-dev): Bump @nextcloud/stylelint-config from 2.3.0 to 2.3.1 (activity#1256)
Bump @nextcloud/initial-state from 2.0.0 to 2.1.0 (activity#1257)
Bump @nextcloud/axios from 2.3.0 to 2.4.0 (activity#1258)
[master] Fix npm audit (activity#1264)
Upgrade: Bump word-wrap from 1.2.3 to 1.2.4 (activity#1266)
Remove color on hovered and focused link (activity#1267)
Upgrade: Bump cypress from 12.17.1 to 12.17.2 (activity#1270)
Upgrade: Bump handlebars from 4.7.7 to 4.7.8 (activity#1275)
[master] Fix npm audit (activity#1279)
Upgrade: Bump tough-cookie and @cypress/request (activity#1282)
Perf(dashboard): implement widget item api v2 (activity#1284)
Drop Symfony event dispatcher (activity#1285)
Upgrade: Bump eslint-plugin-cypress from 2.13.3 to 2.14.0 (activity#1287)
Upgrade: Bump cypress-wait-until from 2.0.0 to 2.0.1 (activity#1288)
Upgrade: Bump regenerator-runtime from 0.13.11 to 0.14.0 (activity#1292)
Upgrade: Bump jest-environment-jsdom from 29.5.0 to 29.6.4 (activity#1294)
Fix Cypress tests for F2V (activity#1295)
[master] Update nextcloud/ocp dependency (activity#1298)
Chore(deps): Move cs-fixer into a composer bin (activity#1303)
Upgrade: Bump @vue/vue2-jest from 29.2.4 to 29.2.6 (activity#1305)
Upgrade: Bump tslib from 2.6.0 to 2.6.2 (activity#1306)
[master] Update nextcloud/ocp dependency (activity#1308)
Fix(db): pre- SELECT ids with a LIMIT to control the amount of rows deleted for MySQL (activity#1309)
Use t for translations (activity#1311)
Upgrade: Bump phpunit/phpunit from 9.6.11 to 9.6.12 (activity#1315)
Upgrade: Bump jest-environment-jsdom from 29.6.4 to 29.7.0 (activity#1316)
Upgrade: Bump @nextcloud/browserslist-config from 2.3.0 to 3.0.0 (activity#1317)
Upgrade: Bump @nextcloud/dialogs from 4.1.0 to 4.2.0 (activity#1318)
Upgrade: Bump @nextcloud/webpack-vue-config from 5.5.1 to 6.0.0 (activity#1319)
Upgrade: Bump jest and @types/jest (activity#1320)
[master] Update nextcloud/ocp dependency (activity#1323)
Upgrade: Bump @nextcloud/vue from 7.12.4 to 7.12.5 (activity#1324)
Bump cypress to v13 (activity#1325)
Upgrade: Bump @nextcloud/dialogs from 4.2.0 to 4.2.1 (activity#1329)
Upgrade: Bump @nextcloud/logger from 2.5.0 to 2.7.0 (activity#1330)
Upgrade: Bump phpunit/phpunit from 9.6.12 to 9.6.13 (activity#1331)
Upgrade: Bump @nextcloud/cypress from 1.0.0-beta.5 to 1.0.0-beta.6 (activity#1332)
Remove click functionality on row entry (activity#1341)
Upgrade: Bump @types/dockerode from 3.3.19 to 3.3.20 (activity#1342)
Upgrade: Bump eslint-plugin-cypress from 2.14.0 to 2.15.1 (activity#1343)
Upgrade: Bump @nextcloud/vue from 7.12.5 to 7.12.6 (activity#1344)
Upgrade: Bump typescript from 5.1.6 to 5.2.2 (activity#1345)
Upgrade: Bump @nextcloud/eslint-config from 8.3.0-beta.2 to 8.3.0 (activity#1346)
[master] Update nextcloud/ocp dependency (activity#1347)
[master] Update nextcloud/ocp dependency (activity#1350)
[master] Fix npm audit (activity#1354)
Fix: chunk delete in query (activity#1359)
Fix(cypress): Make sure cypress tests work with upcoming Nextcloud 28 (activity#1361)
Fix(sidebar): Only load chunk once (activity#1363)
Upgrade: Bump dockerode from 3.3.5 to 4.0.0 (activity#1364)
Upgrade: Bump @mdi/svg from 7.2.96 to 7.3.67 (activity#1365)
[master] Update nextcloud/ocp dependency (activity#1367)
Fix(settings): html validation (activity#1371)
Fix: main page html validation (activity#1372)
[master] Update nextcloud/ocp dependency (activity#1373)
[master] Fix npm audit (activity#1374)
Remove `aria-hidden` for table header (activity#1378)
Upgrade: Bump browserify-sign from 4.2.1 to 4.2.2 (activity#1380)
Upgrade: Bump @nextcloud/moment from 1.2.1 to 1.2.2 (activity#1382)
Upgrade: Bump vue and vue-template-compiler (activity#1383)
[master] Update nextcloud/ocp dependency (activity#1385)
[master] Fix npm audit (activity#1386)
Make the app itself using Vue to fix accessibility (activity#1388)
Upgrade: Bump wait-on from 7.0.1 to 7.1.0 (activity#1389)
Upgrade: Bump @nextcloud/router from 2.1.2 to 2.2.0 (activity#1390)
Upgrade: Bump @types/jest from 29.5.5 to 29.5.7 (activity#1391)
Upgrade: Bump @types/dockerode from 3.3.20 to 3.3.22 (activity#1392)
Fix(ActivityModel): Migrate to TypeScript and fix some type issues (activity#1393)
Fix: Add stub for files event to fix psalm error (activity#1394)
Chore: Update workflows from organization (activity#1397)
Feat: Open previews in Viewer (activity#1398)
Feat(rss): Add server name to the RSS feed title (activity#1400)
Fix(l10n): Ignore compressed js files (activity#1401)
[master] Update nextcloud/ocp dependency (activity#1403)
[master] Fix npm audit (activity#1406)
Cleanup repository (activity#1409)
Fix: rendering of calendar names (activity#1411)
Fix: rendering of address book names (activity#1412)
Fix: Fix missing titles and align table (activity#1413)
Feat(sidebar): Add frontend API that allows to register custom entries (activity#1416)
Fix activity icon (activity#1418)
Chore: Bump @nextcloud/vue to v8.2.0 (activity#1419)
Upgrade: Bump wait-on from 7.1.0 to 7.2.0 (activity#1423)
Upgrade: Bump @types/dockerode from 3.3.22 to 3.3.23 (activity#1424)
Update .l10nignore (activity#1425)
[master] Update nextcloud/ocp dependency (activity#1426)
[master] Fix npm audit (activity#1428)
Chore(CI): Adjust testing matrix for Nextcloud 28 on stable28 (activity#1429)
Fix(sidebar): Refactor code to also load plugin entries when Activity API returns 304 (activity#1439)
Enh: Add navigation label (activity#1451)
Create right list for activity links (activity#1452)
Re-enable the move action in cy tests (activity#1454)
Replace depredated OC.Util.*Date function with moment (activity#530)
Feat(deps): Add Nextcloud 28 support on master (bruteforcesettings#460)
Chore: update workflows from templates (bruteforcesettings#464)
Bump nextcloud/coding-standard from 1.0.0 to 1.1.1 (bruteforcesettings#465)
Chore: update node engines to next LTS (bruteforcesettings#469)
Chore(deps-dev): Bump @nextcloud/stylelint-config from 2.3.0 to 2.3.1 (bruteforcesettings#474)
Chore(deps-dev): Bump word-wrap from 1.2.3 to 1.2.4 (bruteforcesettings#477)
Create pr-feedback.yml (bruteforcesettings#481)
Show current user info (bruteforcesettings#483)
Chore(deps-dev): Bump @nextcloud/webpack-vue-config from 5.4.0 to 6.0.0 (bruteforcesettings#484)
Chore(deps-dev): Bump @nextcloud/browserslist-config from 2.3.0 to 3.0.0 (bruteforcesettings#485)
Chore(deps): Bump browserify-sign from 4.2.1 to 4.2.2 (bruteforcesettings#493)
Chore(deps): Bump @nextcloud/axios from 2.1.0 to 2.4.0 (bruteforcesettings#503)
Fix(i18n): Changed grammar (bruteforcesettings#504)
Create API documentation from source code using phpDocumentor (circles#1241)
Bump phpunit/phpunit from 9.5.28 to 9.6.4 (circles#1274)
Fix incorrect Date format detection (circles#1298)
Feat(deps): Add Nextcloud 28 support on master (circles#1313)
Update Github workflow for psalm checks (circles#1314)
Create pr-feedback.yml (circles#1327)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.4 to 9.6.10 (circles#1343)
Chore(github): update Github workflow files (circles#1360)
Bump unzipper from 0.10.11 to 0.10.14 (files_pdfviewer#744)
Feat(deps): Add Nextcloud 28 support on master (files_pdfviewer#750)
Chore: update workflows from templates (files_pdfviewer#753)
Chore: update workflows from templates (files_pdfviewer#754)
Chore(deps): Bump pdfjs-dist from 3.6.172 to 3.7.107 (files_pdfviewer#755)
Chore(deps-dev): Bump nextcloud/coding-standard from 1.1.0 to 1.1.1 (files_pdfviewer#756)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.8 to 9.6.9 (files_pdfviewer#760)
Chore(deps): Bump @nextcloud/router from 2.1.1 to 2.1.2 (files_pdfviewer#761)
Chore: update node engines to next LTS (files_pdfviewer#762)
[master] Fix npm audit (files_pdfviewer#767)
Create pr-feedback.yml (files_pdfviewer#768)
Chore(deps): Bump pdfjs-dist from 3.7.107 to 3.8.162 (files_pdfviewer#769)
Chore(deps): Bump semver from 5.7.1 to 5.7.2 (files_pdfviewer#771)
Revert “chore: update node engines to next LTS (node 20 / npm 9)” (files_pdfviewer#776)
Chore(deps-dev): Bump @nextcloud/stylelint-config from 2.3.0 to 2.3.1 (files_pdfviewer#782)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.9 to 9.6.10 (files_pdfviewer#785)
PDF annotation support (files_pdfviewer#787)
Allow to resize sidebar (files_pdfviewer#788)
Feat: Fix styling for version comparison (files_pdfviewer#791)
Chore(deps): Bump pdfjs-dist from 3.8.162 to 3.9.179 (files_pdfviewer#792)
Fix initialization after bump to PDF.js 3.9.179 (files_pdfviewer#798)
Chore(deps-dev): Bump @nextcloud/webpack-vue-config from 5.5.1 to 6.0.0 (files_pdfviewer#802)
Chore(deps-dev): Bump @nextcloud/browserslist-config from 2.3.0 to 3.0.0 (files_pdfviewer#803)
Fix extraction of PDF.js package (files_pdfviewer#806)
Add workflow to notify of changed viewer.html (files_pdfviewer#810)
Use Viewer also in public pages for a single share (files_pdfviewer#811)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.10 to 9.6.11 (files_pdfviewer#813)
Chore(deps-dev): Bump axios from 1.4.0 to 1.5.0 (files_pdfviewer#815)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.11 to 9.6.12 (files_pdfviewer#816)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.12 to 9.6.13 (files_pdfviewer#817)
Chore(deps): Bump @nextcloud/logger from 2.5.0 to 2.7.0 (files_pdfviewer#818)
Chore(deps-dev): Bump @nextcloud/eslint-config from 8.2.1 to 8.3.0 (files_pdfviewer#819)
Chore(deps-dev): Bump axios from 1.5.0 to 1.5.1 (files_pdfviewer#820)
[master] Fix npm audit (files_pdfviewer#822)
Chore(deps-dev): Bump @babel/traverse from 7.23.0 to 7.23.2 (files_pdfviewer#835)
Chore(deps): Bump @nextcloud/router from 2.1.2 to 2.2.0 (files_pdfviewer#836)
[master] Fix npm audit (files_pdfviewer#837)
Setup Transifex translations (files_pdfviewer#842)
Chore(deps): Bump pdfjs-dist from 3.9.179 to 3.11.174 (files_pdfviewer#844)
Fix pdf-viewer sizing (files_pdfviewer#845)
Chore(deps-dev): Bump axios from 1.5.1 to 1.6.0 (files_pdfviewer#847)
Delete .tx/backport (files_pdfviewer#848)
Show forms as read-only if the file is not editable (files_pdfviewer#850)
Chore(CI): Adjust testing matrix for Nextcloud 28 on stable28 (files_pdfviewer#865)
Chore(deps): Bump @nextcloud/dialogs from 4.2.1 to 4.2.2 (files_pdfviewer#867)
Chore(deps-dev): Bump axios from 1.6.0 to 1.6.2 (files_pdfviewer#868)
Revert “Extract buttons from pages so the animation does not affect t… (firstrunwizard#1003)
Add initialstate provider (firstrunwizard#1004)
Extract buttons from pages so the animation does not affect t… (firstrunwizard#1005)
Mute video (firstrunwizard#1006)
Chore(deps): Bump @nextcloud/vue from 8.0.0-beta.10 to 8.2.0 (firstrunwizard#1007)
Chore(CI): Adjust testing matrix for Nextcloud 28 on stable28 (firstrunwizard#1008)
Chore(deps): Bump vue and vue-template-compiler (firstrunwizard#1012)
Chore(deps-dev): Bump @nextcloud/stylelint-config from 2.3.0 to 2.3.1 (firstrunwizard#1013)
Chore(deps): Bump @nextcloud/l10n from 2.0.1 to 2.1.0 (firstrunwizard#835)
Add headings for slides (firstrunwizard#852)
Chore(deps-dev): Bump @nextcloud/webpack-vue-config from 5.4.0 to 5.5.1 (firstrunwizard#863)
Feat(deps): Add Nextcloud 28 support on master (firstrunwizard#875)
Chore(deps-dev): Bump vimeo/psalm from 5.11.0 to 5.12.0 (firstrunwizard#876)
Chore: update workflows from templates (firstrunwizard#877)
Update dependabot config (firstrunwizard#880)
Chore: update workflows from templates (firstrunwizard#881)
Chore(deps): Bump fast-xml-parser and is-svg (firstrunwizard#887)
Chore(deps): Bump peter-evans/create-or-update-comment from 3.0.1 to 3.0.2 (firstrunwizard#889)
Chore(deps): Bump @nextcloud/vue from 7.11.6 to 7.12.0 (firstrunwizard#890)
Chore(deps): Bump actions/checkout from 3.5.2 to 3.5.3 (firstrunwizard#894)
Chore(deps): Bump shivammathur/setup-php from 2.25.2 to 2.25.4 (firstrunwizard#895)
Chore(deps): Bump peter-evans/create-pull-request from 5.0.1 to 5.0.2 (firstrunwizard#896)
Chore(deps): Bump @nextcloud/router from 2.1.1 to 2.1.2 (firstrunwizard#897)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.8 to 9.6.9 (firstrunwizard#898)
Chore: update node engines to next LTS (firstrunwizard#902)
[master] Fix npm audit (firstrunwizard#903)
Chore(deps-dev): Bump vimeo/psalm from 5.12.0 to 5.13.1 (firstrunwizard#908)
Chore(deps): Bump fast-xml-parser from 4.2.4 to 4.2.5 (firstrunwizard#909)
Chore(deps): Bump @nextcloud/l10n from 2.1.0 to 2.2.0 (firstrunwizard#910)
Chore(deps): Bump actions/setup-node from 3.6.0 to 3.7.0 (firstrunwizard#912)
Chore(deps): Bump @nextcloud/axios from 2.3.0 to 2.4.0 (firstrunwizard#913)
[master] Fix npm audit (firstrunwizard#915)
Create pr-feedback.yml (firstrunwizard#917)
Chore(deps): Bump @nextcloud/initial-state from 2.0.0 to 2.1.0 (firstrunwizard#918)
[master] Fix npm audit (firstrunwizard#926)
Chore(deps): Bump shivammathur/setup-php from 2.25.4 to 2.25.5 (firstrunwizard#934)
Chore(deps-dev): Bump vimeo/psalm from 5.13.1 to 5.14.1 (firstrunwizard#936)
Chore(deps): Bump @nextcloud/vue from 7.12.0 to 7.12.2 (firstrunwizard#937)
Chore(deps): Bump actions/setup-node from 3.7.0 to 3.8.0 (firstrunwizard#938)
Chore(deps): Bump actions/setup-node from 3.8.0 to 3.8.1 (firstrunwizard#939)
Chore(deps): Bump actions/checkout from 3.5.3 to 3.6.0 (firstrunwizard#942)
Chore(deps): Bump @nextcloud/vue from 7.12.2 to 7.12.4 (firstrunwizard#943)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.9 to 9.6.11 (firstrunwizard#944)
Chore(deps-dev): Bump vimeo/psalm from 5.14.1 to 5.15.0 (firstrunwizard#945)
Chore(deps): Bump shivammathur/setup-php from 2.25.5 to 2.26.0 (firstrunwizard#950)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.11 to 9.6.12 (firstrunwizard#951)
Return if user is empty (firstrunwizard#952)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.12 to 9.6.13 (firstrunwizard#955)
Adjust instructions and delete makefile (firstrunwizard#959)
New first run wizard (firstrunwizard#960)
[master] Fix npm audit (firstrunwizard#962)
Chore(deps-dev): Bump @babel/traverse from 7.22.8 to 7.23.2 (firstrunwizard#971)
Chore(deps): Bump browserify-sign from 4.2.1 to 4.2.2 (firstrunwizard#978)
Chore(deps): Bump @nextcloud/vue from 8.0.0-beta.7 to 8.0.0-beta.10 (firstrunwizard#987)
Add transitions (firstrunwizard#991)
Remove cubic bezier from transition (firstrunwizard#992)
Extract buttons from pages so the animation does not affect them (firstrunwizard#993)
Restore user.svg icon as it’s still used in notifications (firstrunwizard#994)
[master] Fix npm audit (firstrunwizard#998)
Build(deps-dev): Bump @vitest/coverage-istanbul from 0.34.4 to 0.34.5 (logreader#1000)
Build(deps-dev): Bump vitest from 0.34.4 to 0.34.5 (logreader#1001)
Build(deps): Bump @nextcloud/dialogs from 4.1.0 to 4.2.1 (logreader#1002)
Build(deps): Bump @nextcloud/logger from 2.5.0 to 2.7.0 (logreader#1004)
Build(deps-dev): Bump @nextcloud/eslint-config from 8.3.0-beta.2 to 8.3.0 (logreader#1005)
Build(deps-dev): Bump @vitest/coverage-istanbul from 0.34.5 to 0.34.6 (logreader#1007)
Build(deps-dev): Bump vitest from 0.34.5 to 0.34.6 (logreader#1009)
Build(deps-dev): Bump vite from 4.4.9 to 4.4.11 (logreader#1013)
Build(deps-dev): Bump @nextcloud/vite-config from 1.0.0-beta.19 to 1.0.1 (logreader#1014)
Build(deps): Bump postcss from 8.4.27 to 8.4.31 (logreader#1016)
Add a setupcheck for errors and warnings in log file (logreader#1021)
Build(deps): Bump highlight.js from 11.8.0 to 11.9.0 (logreader#1022)
Build(deps): Bump @mdi/svg from 7.2.96 to 7.3.67 (logreader#1023)
Build(deps): Bump pinia from 2.1.6 to 2.1.7 (logreader#1024)
Build(deps): Bump @babel/traverse from 7.22.8 to 7.23.2 (logreader#1026)
Build(deps): Bump browserify-sign from 4.2.1 to 4.2.2 (logreader#1028)
Build(deps-dev): Bump happy-dom from 10.11.0 to 12.10.3 (logreader#1029)
Build(deps): Bump @nextcloud/vue from 8.0.0-beta.2 to 8.0.0-beta.10 (logreader#1033)
Update to psalm 5 to match what server is using (logreader#1034)
Build(deps): Bump axios from 1.4.0 to 1.6.1 (logreader#1035)
Update workflows and only run required ones (logreader#1036)
Dependencies: Update vite and nextcloud/vite-config (logreader#1037)
Fix: Update `@nextcloud/vue` to 8.0.1 and also fix CSS name for settings section (logreader#1039)
Fix(ci): Run tests also on schedule on master so we can get code coverage (logreader#1044)
[master] Update nextcloud/ocp dependency (logreader#1045)
Build(deps): Bump @nextcloud/vue from 8.0.1 to 8.2.0 (logreader#1049)
Build(deps): Bump axios from 1.6.1 to 1.6.2 (logreader#1050)
Build(deps): Bump @nextcloud/dialogs from 5.0.0 to 5.0.2 (logreader#1051)
[master] Update nextcloud/ocp dependency (logreader#1052)
Fix: Handle errors while requesting log entries (logreader#1054)
Fix(ui): Also translate settings modal title (logreader#1055)
Chore(CI): Adjust testing matrix for Nextcloud 28 on stable28 (logreader#1056)
Lower setup check level from error/warning to warning/info (logreader#1070)
Bump react-responsive from 8.2.0 to 9.0.2 (logreader#829)
Bump postcss-nested from 5.0.6 to 6.0.1 (logreader#839)
Bump loader-utils and @teamsupercell/typings-for-css-modules-loader (logreader#842)
Bump webpack-cli from 4.10.0 to 5.1.1 (logreader#867)
Feat(deps): Add Nextcloud 28 support on master (logreader#870)
Allow printing log messages during occ (logreader#873)
Bump @babel/runtime from 7.19.0 to 7.22.0 (logreader#875)
Chore: update workflows from templates (logreader#877)
Bump postcss from 8.4.17 to 8.4.24 (logreader#878)
Bump postcss-loader from 6.2.1 to 7.3.2 (logreader#879)
Bump @babel/plugin-transform-runtime from 7.19.1 to 7.22.4 (logreader#881)
[master] Update nextcloud/ocp dependency (logreader#882)
Fix(a11y): `Copy` menu entries should be implemented as buttons (logreader#884)
Migrate more files to Typescript (logreader#885)
Make log levels button keyboard focusable and activable (logreader#887)
Build(deps-dev): Bump @babel/core from 7.19.3 to 7.22.5 (logreader#889)
Build(deps-dev): Bump @types/react from 18.0.24 to 18.2.9 (logreader#891)
Build(deps): Bump @babel/runtime from 7.22.3 to 7.22.5 (logreader#892)
Build(deps-dev): Bump @babel/preset-env from 7.21.5 to 7.22.5 (logreader#893)
Build(deps-dev): Bump @babel/preset-react from 7.18.6 to 7.22.5 (logreader#894)
Bump postcss-loader from 7.3.2 to 7.3.3 (logreader#895)
Build(deps-dev): Bump ts-loader from 9.4.1 to 9.4.3 (logreader#896)
Bump postcss-preset-env from 7.8.2 to 8.4.2 (logreader#897)
Bump webpack from 5.76.0 to 5.86.0 (logreader#899)
Build(deps-dev): Bump style-loader from 3.3.1 to 3.3.3 (logreader#900)
Bump webpack-cli from 5.1.1 to 5.1.4 (logreader#901)
Bump @babel/plugin-transform-runtime from 7.22.4 to 7.22.5 (logreader#902)
[master] Update nextcloud/ocp dependency (logreader#903)
Add option for raw output in log:watch/log:tail (logreader#905)
Build(deps-dev): Bump @types/react from 18.2.9 to 18.2.12 (logreader#907)
Build(deps): Bump @nextcloud/router from 2.1.1 to 2.1.2 (logreader#909)
Build(deps-dev): Bump webpack from 5.86.0 to 5.87.0 (logreader#910)
Build(deps-dev): Bump css-loader from 6.7.1 to 6.8.1 (logreader#911)
Build(deps-dev): Bump mini-css-extract-plugin from 2.6.1 to 2.7.6 (logreader#912)
Chore: update node engines to next LTS (logreader#915)
Build(deps-dev): Bump @types/react from 18.2.12 to 18.2.14 (logreader#918)
Build(deps-dev): Bump webpack from 5.87.0 to 5.88.0 (logreader#919)
Build(deps-dev): Bump ts-loader from 9.4.3 to 9.4.4 (logreader#920)
Build(deps-dev): Bump webpack from 5.88.0 to 5.88.1 (logreader#922)
Build(deps-dev): Bump @babel/core from 7.22.5 to 7.22.8 (logreader#928)
Build(deps-dev): Bump postcss from 8.4.24 to 8.4.25 (logreader#929)
Build(deps-dev): Bump @babel/plugin-transform-runtime from 7.22.5 to 7.22.7 (logreader#930)
Build(deps-dev): Bump postcss-preset-env from 8.4.2 to 9.0.0 (logreader#931)
Build(deps-dev): Bump babel-loader from 8.2.5 to 9.1.3 (logreader#932)
Build(deps): Bump @babel/runtime from 7.22.5 to 7.22.6 (logreader#933)
Build(deps-dev): Bump @babel/preset-env from 7.22.5 to 7.22.7 (logreader#934)
Build(deps): Bump @nextcloud/axios from 2.3.0 to 2.4.0 (logreader#935)
Migrate app frontend to Vue (logreader#936)
Build(deps-dev): Bump postcss from 8.4.25 to 8.4.26 (logreader#938)
Build(deps-dev): Bump @babel/plugin-transform-runtime from 7.22.7 to 7.22.9 (logreader#939)
Build(deps-dev): Bump @babel/core from 7.22.8 to 7.22.9 (logreader#940)
Build(deps-dev): Bump @types/react from 18.2.14 to 18.2.15 (logreader#941)
Build(deps-dev): Bump @babel/preset-env from 7.22.7 to 7.22.9 (logreader#942)
Build(deps-dev): Bump vite from 4.4.5 to 4.4.6 (logreader#947)
Fix: Use `
` for “loading older entries” row (logreader#948)
[master] Update nextcloud/ocp dependency (logreader#949)
Fix(i18n): Fixed typo (logreader#951)
Fix(i18n): Align spelling of log file (logreader#952)
Chore: Migrate to `@nextcloud/vite-config` (logreader#953)
Build(deps-dev): Bump vitest from 0.33.0 to 0.34.1 (logreader#954)
Build(deps-dev): Bump @pinia/testing from 0.1.2 to 0.1.3 (logreader#957)
Build(deps-dev): Bump @vitest/coverage-istanbul from 0.33.0 to 0.34.1 (logreader#959)
Build(deps): Bump pinia from 2.1.4 to 2.1.6 (logreader#961)
[master] Update nextcloud/ocp dependency (logreader#963)
Build(deps-dev): Bump vite from 4.4.6 to 4.4.9 (logreader#965)
Build(deps-dev): Bump happy-dom from 10.5.2 to 10.9.0 (logreader#966)
Fix logreader:tail/watch commands (logreader#967)
Chore: Update CI workflows from organization (logreader#968)
Create pr-feedback.yml (logreader#970)
Build(deps-dev): Bump @nextcloud/browserslist-config from 2.3.0 to 3.0.0 (logreader#971)
Build(deps-dev): Bump @vitest/coverage-istanbul from 0.34.1 to 0.34.2 (logreader#972)
Build(deps-dev): Bump vitest from 0.34.1 to 0.34.2 (logreader#974)
Build(deps-dev): Bump happy-dom from 10.9.0 to 10.10.4 (logreader#975)
[master] Update nextcloud/ocp dependency (logreader#976)
Build(deps-dev): Bump typescript from 5.1.6 to 5.2.2 (logreader#982)
Build(deps-dev): Bump happy-dom from 10.10.4 to 10.11.0 (logreader#983)
Build(deps-dev): Bump @vitest/coverage-istanbul from 0.34.2 to 0.34.3 (logreader#984)
Build(deps-dev): Bump vitest from 0.34.2 to 0.34.3 (logreader#985)
Build(deps-dev): Bump @vitest/coverage-istanbul from 0.34.3 to 0.34.4 (logreader#991)
Build(deps-dev): Bump vitest from 0.34.3 to 0.34.4 (logreader#992)
Build(deps-dev): Bump @nextcloud/vite-config from 1.0.0-beta.18 to 1.0.0-beta.19 (logreader#999)
Feat(deps): Add Nextcloud 28 support on master (nextcloud_announcements#200)
[master] Update nextcloud/ocp dependency (nextcloud_announcements#202)
Test installation against PHP 8.2 (nextcloud_announcements#203)
Chore(deps-dev): Bump vimeo/psalm from 5.11.0 to 5.12.0 (nextcloud_announcements#205)
Chore: update workflows from templates (nextcloud_announcements#207)
Chore(deps-dev): Bump nextcloud/coding-standard from 1.1.0 to 1.1.1 (nextcloud_announcements#208)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.8 to 9.6.9 (nextcloud_announcements#209)
Chore(deps-dev): Bump vimeo/psalm from 5.12.0 to 5.13.1 (nextcloud_announcements#212)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.9 to 9.6.10 (nextcloud_announcements#215)
Chore(deps-dev): Bump vimeo/psalm from 5.13.1 to 5.14.1 (nextcloud_announcements#218)
Fix(CI): Update actions and tooling (nextcloud_announcements#221)
Fix(CI): Fix OCP package on master (nextcloud_announcements#227)
[master] Update nextcloud/ocp dependency (nextcloud_announcements#228)
[master] Update nextcloud/ocp dependency (nextcloud_announcements#230)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.11 to 9.6.12 (nextcloud_announcements#234)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.12 to 9.6.13 (nextcloud_announcements#235)
[master] Update nextcloud/ocp dependency (nextcloud_announcements#236)
[master] Update nextcloud/ocp dependency (nextcloud_announcements#237)
[master] Update nextcloud/ocp dependency (nextcloud_announcements#241)
[master] Update nextcloud/ocp dependency (nextcloud_announcements#245)
[master] Update nextcloud/ocp dependency (nextcloud_announcements#246)
Fix(UI): Merge UI setting with updatenotifications admin settings (nextcloud_announcements#248)
[master] Update nextcloud/ocp dependency (nextcloud_announcements#251)
[master] Update nextcloud/ocp dependency (nextcloud_announcements#253)
[master] Update nextcloud/ocp dependency (nextcloud_announcements#255)
Chore(CI): Adjust testing matrix for Nextcloud 28 on stable28 (nextcloud_announcements#257)
Update nextcloud/ocp dependency (nextcloud_announcements#261)
Create update-nextcloud-ocp-approve-merge.yml (nextcloud_announcements#263)
Update nextcloud/ocp dependency (nextcloud_announcements#268)
Update nextcloud/ocp dependency (nextcloud_announcements#271)
Chore(deps-dev): Bump @nextcloud/webpack-vue-config from 5.5.0 to 5.5.1 (notifications#1536)
Feat(deps): Add Nextcloud 28 support on master (notifications#1554)
Chore(deps-dev): Bump guzzlehttp/guzzle from 7.5.1 to 7.6.1 in /tests/Integration (notifications#1555)
Chore(deps): Bump @nextcloud/vue from 7.11.4 to 7.11.6 (notifications#1557)
Chore(deps): Bump @nextcloud/event-bus from 3.0.2 to 3.1.0 (notifications#1559)
[master] Update nextcloud/ocp dependency (notifications#1561)
Fix(CI): Run tests against PHP 8.2 (notifications#1563)
Chore(deps-dev): Bump guzzlehttp/guzzle from 7.6.1 to 7.7.0 in /tests/Integration (notifications#1565)
Chore(deps): Bump @nextcloud/auth from 2.0.0 to 2.1.0 (notifications#1566)
Chore(deps-dev): Bump vimeo/psalm from 5.11.0 to 5.12.0 (notifications#1567)
Chore: update workflows from templates (notifications#1569)
Chore(deps-dev): Bump nextcloud/coding-standard from 1.1.0 to 1.1.1 (notifications#1570)
Chore(deps): Bump fast-xml-parser and is-svg (notifications#1571)
Chore(deps): Bump @nextcloud/vue from 7.11.6 to 7.12.0 (notifications#1573)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.8 to 9.6.9 (notifications#1574)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.8 to 9.6.9 in /tests/Integration (notifications#1575)
Chore(deps): Bump @nextcloud/router from 2.1.1 to 2.1.2 (notifications#1577)
Fix(settings): Delete settings when a user is deleted (notifications#1583)
Fix(CI): Try to wait for the mysql container in case it did not start… (notifications#1589)
Chore: update node engines to next LTS (notifications#1590)
Chore(deps): Bump @nextcloud/dialogs from 4.0.1 to 4.1.0 (notifications#1593)
Chore(deps): Bump fast-xml-parser from 4.2.4 to 4.2.5 (notifications#1594)
Update PHP extensions list in performance.yml (notifications#1595)
Fix(Vue): Replace deprecated NcHeaderMenu property (notifications#1597)
Chore(deps-dev): Bump vimeo/psalm from 5.12.0 to 5.13.1 (notifications#1598)
Chore(deps): Bump @nextcloud/capabilities from 1.0.4 to 1.1.0 (notifications#1599)
Create pr-feedback.yml (notifications#1600)
Chore[master] – audit dependencies (notifications#1602)
Chore(deps): Bump @nextcloud/axios from 2.3.0 to 2.4.0 (notifications#1607)
Chore(deps): Bump semver from 5.7.1 to 5.7.2 (notifications#1610)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.9 to 9.6.10 (notifications#1616)
Chore(deps): Bump @nextcloud/initial-state from 2.0.0 to 2.1.0 (notifications#1618)
Chore(deps): Bump @nextcloud/vue from 7.12.0 to 7.12.1 (notifications#1619)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.9 to 9.6.10 in /tests/Integration (notifications#1620)
Bump @nextcloud/stylelint-config from 2.3.0 to 2.3.1 (notifications#1621)
Remove stable24 from dependabot.yml since it’s EOL by now (notifications#1626)
Update update-nextcloud-ocp.yml (notifications#1628)
Fix(CI): Update nextcloud/ocp composer package manually (notifications#1632)
[master] Update nextcloud/ocp dependency (notifications#1635)
Fix(fairuse): Adjust website URL (notifications#1637)
Add OpenAPI spec (notifications#1640)
[master] Update nextcloud/ocp dependency (notifications#1642)
Chore(deps-dev): Bump @nextcloud/webpack-vue-config from 5.5.1 to 6.0.0 (notifications#1643)
Chore(deps-dev): Bump @nextcloud/browserslist-config from 2.3.0 to 3.0.0 (notifications#1644)
[master] Update nextcloud/ocp dependency (notifications#1645)
Chore(deps): Bump @nextcloud/vue from 7.12.1 to 7.12.4 (notifications#1646)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.10 to 9.6.11 in /tests/Integration (notifications#1647)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.10 to 9.6.11 (notifications#1648)
Chore(deps-dev): Bump vimeo/psalm from 5.14.1 to 5.15.0 (notifications#1649)
[master] Update nextcloud/ocp dependency (notifications#1651)
Chore(deps-dev): Bump guzzlehttp/guzzle from 7.7.0 to 7.8.0 in /tests/Integration (notifications#1652)
[master] Update nextcloud/ocp dependency (notifications#1653)
Fix (visually) removing first notification when executing an action (notifications#1657)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.11 to 9.6.12 (notifications#1659)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.11 to 9.6.12 in /tests/Integration (notifications#1661)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.12 to 9.6.13 (notifications#1665)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.12 to 9.6.13 in /tests/Integration (notifications#1666)
Chore(deps): Bump @nextcloud/auth from 2.1.0 to 2.2.1 (notifications#1667)
Chore(deps): Bump howler from 2.2.3 to 2.2.4 (notifications#1668)
Chore(deps): Bump @nextcloud/vue from 7.12.4 to 7.12.5 (notifications#1669)
Fix typo in EndpointController (notifications#1673)
[master] Update nextcloud/ocp dependency (notifications#1674)
Chore(deps-dev): Bump @nextcloud/eslint-config from 8.2.1 to 8.3.0 (notifications#1675)
Chore: Bump @nextcloud/vue to v8-beta.7 (notifications#1676)
Chore(deps): Bump @nextcloud/dialogs from 4.1.0 to 4.2.1 (notifications#1677)
[master] Update nextcloud/ocp dependency (notifications#1678)
Chore(deps): Bump @nextcloud/vue from 8.0.0-beta.7 to 8.0.0-beta.8 (notifications#1680)
[master] Update nextcloud/ocp dependency (notifications#1684)
Chore(CI): Update workflows (notifications#1685)
Update openapi-extractor (notifications#1686)
[master] Update nextcloud/ocp dependency (notifications#1689)
Chore(deps): Bump @babel/traverse from 7.23.0 to 7.23.2 (notifications#1691)
Chore(deps): Bump @nextcloud/moment from 1.2.1 to 1.2.2 (notifications#1692)
Chore(deps): Bump @nextcloud/router from 2.1.2 to 2.2.0 (notifications#1693)
Chore(deps): Bump @nextcloud/browser-storage from 0.2.0 to 0.3.0 (notifications#1694)
[master] Update nextcloud/ocp dependency (notifications#1698)
Feat(setup): Add a setup message when the rate limit was reached (notifications#1699)
Chore(deps): Bump browserify-sign from 4.2.1 to 4.2.2 (notifications#1701)
Chore(deps): Bump @nextcloud/vue from 8.0.0-beta.8 to 8.0.0-beta.9 (notifications#1702)
Chore(deps): Bump vue and vue-template-compiler (notifications#1703)
[master] Update nextcloud/ocp dependency (notifications#1708)
Chore(deps): Bump @nextcloud/vue from 8.0.0-beta.9 to 8.0.0-beta.10 (notifications#1709)
[master] Update nextcloud/ocp dependency (notifications#1710)
Chore(deps): Bump @nextcloud/dialogs from 4.2.1 to 5.0.0 (notifications#1711)
Chore(deps): Bump @nextcloud/vue from 8.0.0-beta.10 to 8.0.1 (notifications#1712)
[master] Update nextcloud/ocp dependency (notifications#1715)
Fix(UI): Fix NcRichText usage (notifications#1716)
Chore: Bump @nextcloud/vue to v8.2.0 (notifications#1719)
Chore(deps): Bump @nextcloud/dialogs from 5.0.0 to 5.0.2 (notifications#1720)
[master] Update nextcloud/ocp dependency (notifications#1722)
Chore(CI): Adjust testing matrix for Nextcloud 28 on stable28 (notifications#1724)
Update nextcloud/ocp dependency (notifications#1728)
Create update-nextcloud-ocp-approve-merge.yml (notifications#1731)
Chore(deps): Bump @nextcloud/dialogs from 5.0.2 to 5.0.3 (notifications#1735)
Update nextcloud/ocp dependency (notifications#1740)
Feat(deps): Add Nextcloud 28 support on master (password_policy#475)
Chore(deps): Bump @nextcloud/vue from 7.11.5 to 7.11.6 (password_policy#476)
Chore: adjust CODEOWNERS file (password_policy#477)
Chore: update workflows from templates (password_policy#478)
Chore(deps-dev): Bump nextcloud/coding-standard from 1.1.0 to 1.1.1 (password_policy#479)
Chore(deps): Bump fast-xml-parser from 4.2.2 to 4.2.4 (password_policy#480)
Chore: update node engines to next LTS (password_policy#483)
Chore(deps): Bump fast-xml-parser from 4.2.4 to 4.2.5 (password_policy#486)
Chore(deps-dev): Bump @nextcloud/stylelint-config from 2.3.0 to 2.3.1 (password_policy#490)
Chore(deps-dev): Bump word-wrap from 1.2.3 to 1.2.4 (password_policy#491)
Create pr-feedback.yml (password_policy#492)
Chore(deps-dev): Bump @nextcloud/browserslist-config from 2.3.0 to 3.0.0 (password_policy#494)
Chore(deps-dev): Bump @nextcloud/webpack-vue-config from 5.5.1 to 6.0.0 (password_policy#495)
Chore(deps-dev): Bump @nextcloud/eslint-config from 8.2.1 to 8.3.0 (password_policy#503)
Chore(deps): Bump browserify-sign from 4.2.1 to 4.2.2 (password_policy#506)
Chore(deps): Bump axios and @nextcloud/axios (password_policy#511)
Chore(deps-dev): Bump @babel/traverse from 7.22.10 to 7.23.3 (password_policy#515)
Chore(CI): Adjust testing matrix for Nextcloud 28 on stable28 (password_policy#520)
Bump wait-on from 6.0.1 to 7.0.1 (photos#1557)
Consolidate fontend logic (photos#1621)
[master] Update nextcloud/ocp dependency (photos#1758)
Adapt to SystemTags optimizations on server (photos#1770)
Feat(deps): Add Nextcloud 28 support on master (photos#1807)
[master] Fix npm audit (photos#1821)
Fix: properly handle public link share deletion (photos#1823)
Add more e2e tests (photos#1826)
Accessible Photos directory settings (photos#1828)
Update @nc/eslint-config and apply linting rules (photos#1829)
Chore: update workflows from templates (photos#1831)
Enh(faces): Implement UnassignedFaces view (photos#1832)
Fix: use owner instead of owner_id to delete photos by owner (photos#1837)
Chore(deps-dev): Bump nextcloud/coding-standard from 1.0.0 to 1.1.1 (photos#1839)
Update view when layout setting changes (photos#1856)
Prevent progress bar overflow when uploading in album content (photos#1862)
Make file list semantically correct (photos#1867)
[master] Fix npm audit (photos#1876)
Enh(faces): Avoid O(n) API calls on faces overview (photos#1881)
Split sections in independent lists (photos#1882)
Reset selection state in route change (photos#1888)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.8 to 9.6.9 (photos#1892)
Add unselect all button (photos#1895)
Chore: update node engines to next LTS (photos#1898)
[master] Fix npm audit (photos#1904)
Match visible text with aria-labels (photos#1906)
Updating cypress.yml workflow from template (photos#1907)
[master] Fix npm audit (photos#1912)
Create pr-feedback.yml (photos#1916)
[master] Fix npm audit (photos#1938)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.9 to 9.6.10 (photos#1944)
Chore(deps-dev): Bump word-wrap from 1.2.3 to 1.2.4 (photos#1954)
Chore(deps): Bump qs from 6.11.0 to 6.11.2 (photos#1982)
Chore(deps-dev): Bump autoprefixer from 10.4.13 to 10.4.14 (photos#1983)
Chore(deps-dev): Bump postcss-loader from 7.0.2 to 7.3.3 (photos#1984)
Chore(deps): Bump @nextcloud/initial-state from 2.0.0 to 2.1.0 (photos#1985)
Chore(deps): upgrade `@nextcloud` family (photos#1988)
Chore(deps-dev): Bump @vue/test-utils from 1.3.3 to 1.3.6 (photos#1996)
Chore(deps): Bump vue-material-design-icons from 5.1.2 to 5.2.0 (photos#2000)
Chore(deps-dev): Bump cypress-wait-until from 1.7.2 to 2.0.1 (photos#2001)
Upgrade @nextcloud/vue to v8 beta (photos#2020)
Techdebt(DI): Use public IThrottler interface which exists since 25 (photos#2034)
Chore(deps-dev): Bump @vue/vue2-jest from 29.2.4 to 29.2.6 (photos#2045)
Use t for translations (photos#2049)
Recycle DOM elements in virtual scrolling (photos#2052)
Wrap cache query in a try/catch (photos#2053)
Bump cypress to v13 (photos#2054)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.10 to 9.6.13 (photos#2060)
Run npm audit fix (photos#2064)
Chore(deps-dev): Bump tslib from 2.5.0 to 2.6.2 (photos#2068)
Chore(deps-dev): Bump postcss from 8.4.27 to 8.4.31 (photos#2071)
Reduce width on title and content for header navigation (photos#2086)
Fix buttons on new album modal window (photos#2087)
Perf: make geoNameFolder lazy (photos#2094)
Chore(deps-dev): Bump @babel/traverse from 7.22.5 to 7.23.2 (photos#2096)
Fix: open settings button (photos#2098)
Fix new album form layout (photos#2099)
Filter out some permission for public albums (photos#2103)
Use new metadata API for providers (photos#2104)
Update vue to 8.0.0-beta.9 (photos#2111)
Display EXIF data (photos#2115)
Enh: Add unique DOM identifiers for nav entries (photos#2118)
Init metadata (photos#2119)
Use original date time to order files in UI (photos#2125)
Add overlay on live photo (photos#2127)
Metadata: fix crash when datetime has invalid format (photos#2128)
Fix(a11y): Backwards photos tabulation (photos#2129)
Add sidebar to the build entries (photos#2130)
Fix EXIF display conditions (photos#2135)
Chore: Bump @nextcloud/vue to v8.2.0 (photos#2136)
Chore(deps-dev): Bump sabre/dav from 4.4.0 to 4.5.0 (photos#2138)
Port virtual list perf improvements from F2V (photos#2139)
Use NC URL to download cities list (photos#2141)
Use information outline as sidebar icon (photos#2142)
Chore(CI): Adjust testing matrix for Nextcloud 28 on stable28 (photos#2145)
Chore(deps-dev): Bump jest-environment-jsdom from 29.4.1 to 29.4.3 (photos#2153)
Fix links to faces with special chars (photos#2164)
Don’t check display name on null (photos#2167)
Fix: Skip empty files in metadata providers (photos#2170)
Fix(DB): Fix “IS NOT NULL” database queries (photos#2173)
Show title and close of modal inline (photos#2181)
Enh: Add navigation label (photos#2184)
Chore(deps): Bump @nextcloud/dialogs from 3.2.0 to 4.0.1 (privacy#855)
Chore(deps): Bump @nextcloud/l10n from 1.6.0 to 2.1.0 (privacy#856)
Chore(deps-dev): Bump @nextcloud/webpack-vue-config from 5.4.0 to 5.5.1 (privacy#884)
Feat(deps): Add Nextcloud 28 support on master (privacy#895)
[master] Fix npm audit (privacy#899)
Chore: update workflows from templates (privacy#900)
Chore(deps-dev): Bump nextcloud/coding-standard from 1.0.0 to 1.1.1 (privacy#901)
Chore(deps): Bump fast-xml-parser and is-svg (privacy#902)
Chore(deps): Bump @nextcloud/vue from 7.8.0 to 7.12.0 (privacy#903)
[master] Fix npm audit (privacy#904)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.8 to 9.6.9 (privacy#909)
Chore(deps): Bump @nextcloud/router from 2.1.1 to 2.1.2 (privacy#911)
Chore: update node engines to next LTS (privacy#912)
[master] Fix npm audit (privacy#918)
Chore(deps): Bump @nextcloud/l10n from 2.1.0 to 2.2.0 (privacy#920)
[master] Fix npm audit (privacy#921)
Chore(deps): Bump @nextcloud/axios from 2.3.0 to 2.4.0 (privacy#925)
[master] Fix npm audit (privacy#926)
Create pr-feedback.yml (privacy#931)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.9 to 9.6.10 (privacy#932)
Chore(deps-dev): Bump @nextcloud/stylelint-config from 2.3.0 to 2.3.1 (privacy#935)
Chore(deps): Bump @nextcloud/vue from 7.12.0 to 7.12.1 (privacy#939)
Chore(deps): Bump @nextcloud/initial-state from 2.0.0 to 2.1.0 (privacy#942)
Chore(deps): Bump @nextcloud/vue from 7.12.1 to 7.12.2 (privacy#944)
Chore(deps): Bump @nextcloud/dialogs from 4.0.1 to 4.1.0 (privacy#949)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.10 to 9.6.11 (privacy#954)
Chore(deps): Bump @nextcloud/vue from 7.12.2 to 7.12.4 (privacy#955)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.11 to 9.6.12 (privacy#958)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.12 to 9.6.13 (privacy#963)
[master] Fix npm audit (privacy#967)
Chore(deps): Bump @babel/traverse from 7.22.10 to 7.23.2 (privacy#972)
[master] Fix npm audit (privacy#973)
Chore(deps): Bump browserify-sign from 4.2.1 to 4.2.2 (privacy#977)
[master] Fix npm audit (privacy#988)
Chore(CI): Adjust testing matrix for Nextcloud 28 on stable28 (privacy#993)
Chore(deps): Bump vue from 2.7.14 to 2.7.15 (privacy#995)
Enh(a11y): Make privacy markup accessible (privacy#998)
Feat(deps): Add Nextcloud 28 support on master (recommendations#618)
[master] Fix npm audit (recommendations#619)
[master] Fix npm audit (recommendations#625)
Create pr-feedback.yml (recommendations#630)
Chore(deps-dev): Bump word-wrap from 1.2.3 to 1.2.4 (recommendations#631)
Chore(deps-dev): Bump semver from 5.7.1 to 5.7.2 (recommendations#632)
Feat: 28 Files headers compatibility (recommendations#637)
Chore: Update npm audit branches (recommendations#639)
Perf(dashboard): implement widget item api v2 (recommendations#641)
Use app name that reflect app path (recommendations#642)
Chore(deps): Bump @nextcloud/axios from 2.3.0 to 2.4.0 (recommendations#645)
Chore(deps-dev): Bump @nextcloud/stylelint-config from 2.3.0 to 2.3.1 (recommendations#647)
[master] Fix npm audit (recommendations#650)
[master] Fix npm audit (recommendations#656)
[master] Fix npm audit (recommendations#666)
[master] Fix npm audit (recommendations#674)
Chore(CI): Adjust testing matrix for Nextcloud 28 on stable28 (recommendations#679)
Chore(deps-dev): Bump @nextcloud/webpack-vue-config from 5.5.0 to 5.5.1 (related_resources#218)
Feat(deps): Add Nextcloud 28 support on master (related_resources#235)
[master] Fix npm audit (related_resources#237)
Fresh session if missing (related_resources#238)
Chore: update workflows from templates (related_resources#241)
Chore(deps-dev): Bump nextcloud/coding-standard from 1.0.0 to 1.1.1 (related_resources#242)
Single init circlesmanager (related_resources#243)
Chore(deps): Bump fast-xml-parser and is-svg (related_resources#244)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.8 to 9.6.9 (related_resources#249)
Chore(deps): Bump @nextcloud/router from 2.0.0 to 2.1.2 (related_resources#250)
Chore: update node engines to next LTS (related_resources#251)
[master] Fix npm audit (related_resources#253)
Chore(deps): Bump @nextcloud/l10n from 1.6.0 to 2.2.0 (related_resources#254)
Chore(deps): Bump fast-xml-parser from 4.2.4 to 4.2.5 (related_resources#255)
Chore(deps): Bump @nextcloud/axios from 2.2.0 to 2.4.0 (related_resources#256)
Remove useless logs (related_resources#257)
Create pr-feedback.yml (related_resources#258)
Chore(deps): Bump @nextcloud/vue from 7.11.6 to 7.12.1 (related_resources#259)
Chore(deps-dev): Bump @nextcloud/stylelint-config from 2.3.0 to 2.3.1 (related_resources#260)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.9 to 9.6.10 (related_resources#261)
[master] Fix npm audit (related_resources#263)
Update composer dependencies (related_resources#264)
[master] Update nextcloud/ocp dependency (related_resources#266)
[master] Fix npm audit (related_resources#267)
[master] Update nextcloud/ocp dependency (related_resources#273)
Update OCP workflow from upstream to avoid failures on main branch (related_resources#274)
Bump @nextcloud/vue from 7.12.1 to 7.12.2 (related_resources#275)
[master] Update nextcloud/ocp dependency (related_resources#276)
Chore(deps-dev): Bump @nextcloud/browserslist-config from 2.3.0 to 3.0.0 (related_resources#279)
[master] Update nextcloud/ocp dependency (related_resources#280)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.10 to 9.6.11 (related_resources#282)
Chore(deps): Bump @nextcloud/vue from 7.12.2 to 7.12.4 (related_resources#283)
Chore: Drop EOL stable24 from audit (related_resources#287)
Drop main from audit (related_resources#290)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.11 to 9.6.12 (related_resources#291)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.12 to 9.6.13 (related_resources#294)
Chore(deps-dev): Bump @nextcloud/eslint-config from 8.2.1 to 8.3.0 (related_resources#296)
[master] Fix npm audit (related_resources#298)
Contacts provider (related_resources#302)
Chore(deps-dev): Bump @babel/traverse from 7.23.0 to 7.23.2 (related_resources#306)
Chore(deps): Bump @nextcloud/router from 2.1.2 to 2.2.0 (related_resources#307)
New API param resourceType (related_resources#311)
Chore(deps): Bump browserify-sign from 4.2.1 to 4.2.2 (related_resources#312)
Returns resources preview (related_resources#314)
Add update info to serverinfo api call (serverinfo#434)
Feat(deps): Add Nextcloud 28 support on master (serverinfo#455)
[master] Update nextcloud/ocp dependency (serverinfo#456)
Feat: add phpinfo (serverinfo#469)
Chore: add pr-feedback workflow (serverinfo#470)
Feat: enable dependabot for php (serverinfo#475)
Chore(deps-dev): Bump psalm/phar from 4.30.0 to 5.13.1 (serverinfo#476)
Chore(deps-dev): Bump phpunit/phpunit from 9.5.28 to 9.6.10 (serverinfo#477)
Chore(deps-dev): Bump nextcloud/coding-standard from 1.0.0 to 1.1.1 (serverinfo#478)
Chore: adjust commit message for dependabot (serverinfo#479)
Chore: enable dependabot for github actions (serverinfo#481)
Chore: remove dependabot for github actions (serverinfo#486)
Feat: rename DefaultOs to Linux (serverinfo#488)
Chore(deps-dev): Bump psalm/phar from 5.13.1 to 5.14.1 (serverinfo#489)
Chore: enable dependabot auto merge (serverinfo#490)
Update pr-feedback.yml (serverinfo#493)
Docs: add heading for storage stats background job (serverinfo#494)
Fix: remove hint about your disk is full notification (serverinfo#495)
Chore: add value object for thermal zone (serverinfo#496)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.10 to 9.6.11 (serverinfo#498)
Chore(deps-dev): Bump psalm/phar from 5.14.1 to 5.15.0 (serverinfo#499)
Chore: dont autoload ocp package (serverinfo#500)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.11 to 9.6.12 (serverinfo#504)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.12 to 9.6.13 (serverinfo#505)
Ci: update phpunit workflows for main (serverinfo#510)
Ci: update lint and psalm workflow (serverinfo#511)
Build: bump coding-standard and psalm (serverinfo#513)
Ci: update ocp workflow (serverinfo#515)
Fix: add flag to skip external requests (serverinfo#518)
[master] Update nextcloud/ocp dependency (serverinfo#519)
Feat: make update data opt-in (serverinfo#522)
[master] Update nextcloud/ocp dependency (serverinfo#523)
Feat: make apps updates opt-in by default (serverinfo#526)
[master] Update nextcloud/ocp dependency (serverinfo#528)
Chore(CI): Adjust testing matrix for Nextcloud 28 on stable28 (serverinfo#529)
Feat(deps): Add Nextcloud 28 support on master (survey_client#190)
Feat(deps): Add Nextcloud 28 support on master (suspicious_login#800)
Chore: update workflows from templates (suspicious_login#802)
Ci(phpunit): revert force enabling the app (suspicious_login#806)
Chore: update node engines to next LTS (suspicious_login#809)
Create pr-feedback.yml (suspicious_login#811)
Chore(deps): update dependency @nextcloud/browserslist-config to v3 (master) (suspicious_login#820)
Chore(deps): Enable bumps and pins for github actions (suspicious_login#821)
Chore(release): v6.0.0 (suspicious_login#826)
Doc: Document installation and distribution (suspicious_login#828)
Allow opening files outside of the file system in viewer (text#2832)
Fix: paste multiple line to table issue (text#3906)
Fix(deps): update highlight (main) (text#4132)
Feat(deps): Add Nextcloud 28 support on main (text#4202)
Chore(deps): update dependency prosemirror-test-builder to ^1.1.1 (main) (text#4203)
Chore(deps): update dependency vue-demi to ^0.14.4 (main) (text#4204)
Chore(deps): update dependency vite to ^4.3.8 (main) (text#4206)
Chore(deps): update dependency vue-demi to ^0.14.5 (main) (text#4207)
Fix(deps): update dependency @nextcloud/event-bus to ^3.1.0 (main) (text#4208)
Fix(menubar): show selection status correctly (text#4211)
Fix: handle non markdown files in conflicts (text#4220)
Chore(deps): update dependency vite to ^4.3.9 (main) (text#4222)
Chore(deps-dev): Bump psalm/phar from 5.11.0 to 5.12.0 (text#4223)
Fix(deps): update dependency lib0 to ^0.2.77 (main) (text#4224)
Chore(deps): update dependency cypress to ^12.13.0 (main) (text#4225)
Fix(deps): update dependency @nextcloud/auth to ^2.1.0 (main) (text#4226)
Chore: update workflows from templates (text#4235)
Fix: fix and upgrade cypress workflow (text#4236)
Chore(deps-dev): Bump nextcloud/coding-standard from 1.1.0 to 1.1.1 (text#4238)
Fix(UserApiController): Fix warning during test run with PHP 8.2 (text#4241)
Ci(block-merge-freeze): Fix picking master branch for server (text#4243)
No more deprecated API usages (text#4248)
Chore(deps): Bump fast-xml-parser and is-svg (text#4249)
Bring back keyboard shortcuts to help modal on non-mobile (text#4251)
Don’t expect HTML element with ID `mimetype` in public share (text#4253)
Limit cypress to github runners (text#4255)
Chore: Switch to NcSavingIndicatorIcon (text#4259)
Chore: Simplify issue template (text#4261)
Fix(deps): update dependency lib0 to ^0.2.78 (main) (text#4262)
Chore(deps): update dependency cypress to ^12.14.0 (main) (text#4263)
Introduce middleware for session handling (text#4266)
Fix/4267 js tests (text#4268)
Fix(deps): update dependency yjs to ^13.6.2 (main) (text#4274)
Fix(deps): update dependency @hocuspocus/provider to ^2.1.0 (main) (text#4275)
Fix(deps): update dependency @nextcloud/vue to ^7.12.0 (main) (text#4280)
Fix/2708 pasting tables (text#4285)
Fix(sync): Save even if versions match (text#4286)
Update: can i use browser list (text#4288)
Fix: Catch unique constraint violation when creating new documents (text#4289)
Make use of session middleware in remaining controllers (text#4290)
Chore: Bump composer autoloader for new composer version (text#4291)
Emit sync event after successful push to pick up syncing again (text#4297)
Feature/translate modal (text#4299)
Fix(cypress): shortcut test retry (text#4300)
Fix(css): info callout box color to –color-info (text#4301)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.8 to 9.6.9 (text#4305)
Fix: Pass origin along the initial state update (text#4309)
Y.js backend enhancements and debug helpers (text#4310)
Fix: clickable zone of task list checkbox (text#4312)
Fix(deps): update dependency @nextcloud/files to ^3.0.0-beta.10 (main) (text#4315)
Fix(deps): update dependency @nextcloud/router to ^2.1.2 (main) (text#4316)
Chore(css): Move CSS files to src directory (text#4318)
Fix: link preview width on mobile (text#4327)
Chore(dependencies): Skip tiptap/prosemirror updates for 25 (text#4328)
Fix(deps): update dependency yjs to ^13.6.4 (main) (text#4329)
Chore(deps): update dependency cypress to ^12.15.0 (main) (text#4330)
Chore: update node engines to next LTS (text#4335)
Fade out user cursor labels after five seconds of inactivity (text#4336)
Fix: max width of editor container on mobile (text#4337)
Fix: Delete inactive sessions in one query (text#4339)
Fix: Replace invalid sass rules with correct ones (text#4345)
Feat: hide share and close buttons on direct editing for desktop (text#4346)
Fix(deps): update dependency yjs to ^13.6.5 (main) (text#4347)
Fix(deps): update dependency @hocuspocus/provider to ^2.2.0 (main) (text#4348)
Chore(deps): Bump fast-xml-parser from 4.2.4 to 4.2.5 (text#4349)
Fix(deps): update dependency @nextcloud/dialogs to ^4.1.0 (main) (text#4351)
Chore(deps): update dependency vite-plugin-commonjs to ^0.8.0 (main) (text#4353)
Ci/flaky runners (text#4357)
Rework cypress commands (text#4364)
Fix(deps): update dependency @nextcloud/l10n to ^2.2.0 (main) (text#4383)
Fix(deps): update dependency yjs to ^13.6.6 (main) (text#4386)
Feat: update render markdown for tables (text#4390)
Ci(workflows): Update Github workflows from templates (text#4393)
Chore(deps): update dependency cypress to ^12.16.0 (main) (text#4396)
Fix: hotkey ctrl-s (text#4400)
Fix: remove redundant css (text#4401)
Chore(deps): update dependency @nextcloud/eslint-config to ^8.3.0-beta.2 (main) (text#4402)
Chore: update relativeci workflow and webpack usage (text#4406)
Fix(frontend): Update last saved timestamp when document is saved (text#4409)
Ci(cypress): Adapt modal selector to viewer change (text#4412)
Fix(deps): update dependency @nextcloud/vue to v8 (main) (text#4420)
Split sync of ApiService to sync and save (text#4424)
Chore(deps-dev): Bump psalm/phar from 5.12.0 to 5.13.1 (text#4425)
[main] Fix npm audit (text#4427)
Fix(deps): update dependency @nextcloud/axios to ^2.4.0 (main) (text#4431)
Create pr-feedback.yml (text#4435)
Fix(deps): update dependency @hocuspocus/provider to ^2.2.1 (main) (text#4437)
Fix(deps): update dependency @nextcloud/files to ^3.0.0-beta.11 (main) (text#4438)
Fix(deps): update dependency mitt to ^3.0.1 (main) (text#4439)
Chore(deps): update jest to ^29.6.1 (main) (text#4440)
Chore(deps): update dependency cypress to ^12.17.0 (main) (text#4444)
Chore(deps): update dependency vite to ^4.4.1 (main) (text#4445)
Fix(frontend): Improve paste handler for table cells (text#4452)
Chore(deps): update dependency vite to ^4.4.2 (main) (text#4453)
[main] Fix npm audit (text#4464)
Ci(audit): Do not create pull requests if npm audit fix fails (text#4468)
Fix sync errors after network issues (text#4474)
Fix: cursor in image description on firefox (text#4475)
Chore(deps): update dependency cypress to ^12.17.1 (main) (text#4476)
Fix: Fetch attachment share permissions (text#4481)
Fix: Encode individual parts of the dav url as uri components (text#4488)
Chore(deps): update dependency @nextcloud/stylelint-config to ^2.3.1 (main) (text#4491)
Chore(deps): update dependency vite to ^4.4.3 (main) (text#4492)
Fix(deps): update dependency @nextcloud/initial-state to ^2.1.0 (main) (text#4493)
Fix: remove duplicated save key action (text#4495)
Fix some JS deprecations (text#4496)
Fix(sync): only save on close if changes were made (text#4503)
Fix: clear pending autosync on close (text#4504)
Chore(deps): update dependency vite-plugin-commonjs to ^0.8.1 (main) (text#4505)
Tests(cypress): Refactor reconnect test to be more reliable and add second test for actual reconnect (text#4507)
Fix save on direct editing (text#4510)
Fix: tab key in code block (text#4520)
Fix: Add index to session_id on text_steps table (text#4521)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.9 to 9.6.10 (text#4526)
Chore(deps): update dependency vite to ^4.4.4 (main) (text#4527)
Fix(deps): update dependency @hocuspocus/provider to ^2.2.3 (main) (text#4528)
Fix: Use prefilter for delete with subquery (text#4539)
Fix: Remember cursor position when autofocus on load (text#4540)
Bugfix/duplicated load of yjs (text#4542)
Feat: add component SkeletonLoading (text#4545)
Chore(deps-dev): Bump word-wrap from 1.2.3 to 1.2.4 (text#4546)
Fix: Use simple query and chunk in PHP to delete inactive sessions (text#4549)
Ci: Fix cypress test failing due to new autofocus cursor position (text#4550)
Fix(postgres): Use a unique index name (text#4553)
Chore(deps): update dependency cypress to ^12.17.2 (main) (text#4557)
Chore(deps): update dependency vite to ^4.4.5 (main) (text#4558)
Chore(deps): update dependency vite-plugin-commonjs to ^0.8.2 (main) (text#4559)
Fix(deps): update dependency slug to ^8.2.3 (main) (text#4560)
Fix(deps): update tiptap to ^2.0.4 (main) (text#4571)
Chore(deps): update dependency vite to ^4.4.6 (main) (text#4576)
Fix(deps): update dependency yjs to ^13.6.7 (main) (text#4579)
[main] Update nextcloud/ocp dependency (text#4582)
Stricter typing to match psalm level 2 (text#4584)
Feat: Expose formatting menu bar actions through slash command (text#4587)
Fix(mentions): encode user id in mentions URLs (text#4588)
Add syntax highlighting in code blocks (text#4592)
Fix(css): Fix margin-bottom for list items (text#4596)
Chore(package): drop unused hocuspocus dependency (text#4597)
Chore(deps): update dependency vite to ^4.4.7 (main) (text#4603)
Chore(deps): update jest to ^29.6.2 (main) (text#4604)
[main] Update nextcloud/ocp dependency (text#4611)
Feat: Add support for mermaid.js rendering (text#4614)
Fix(editor): Don’t load both Tiptap collaboration history extensions (text#4621)
Text processing integration (text#4627)
Chore(deps): update dependency cypress to ^12.17.3 (main) – autoclosed (text#4628)
Chore(deps): update dependency vite to ^4.4.8 (main) (text#4629)
Chore(deps-dev): Bump psalm/phar from 5.13.1 to 5.14.1 (text#4632)
Fix: Use resize observer to calculate menubar icon limit (text#4637)
[main] Update nextcloud/ocp dependency (text#4642)
Fix: Use default font size (text#4644)
Fix(css): Move code highlighting CSS to `prosemirror.scss` (text#4645)
Chore(deps): Bump tough-cookie and @cypress/request (text#4648)
Feat(npm): Prepare for 28.0.0-dev.1 release (text#4653)
Fix(ViewerComponent): Only fetch source if `this.source` is set (text#4654)
Fix: Properly handle viewer loading in collectives (text#4657)
Cypress tests for smart picker, code block, mermaid and version view/compare (text#4663)
Fix: Avoid unnecessary local translate function (text#4664)
Feat: 28 Files2vue compatibility (text#4666)
Ci(cypress): Make sure to build before cypress (text#4667)
Chore(deps): update dependency @vue/vue2-jest to ^29.2.5 (main) (text#4669)
Chore(deps): update dependency vite to ^4.4.9 (main) (text#4670)
Fix(deps): update dependency lib0 to ^0.2.81 (main) (text#4671)
Fix(deps): update dependency mermaid to ^10.3.1 (main) (text#4672)
Chore(deps): update dependency eslint-plugin-cypress to ^2.14.0 (main) (text#4673)
[main] Update nextcloud/ocp dependency (text#4678)
Fix: Sort regular smart picker options first (text#4682)
Chore(deps): update dependency @nextcloud/webpack-vue-config to v6 (main) (text#4690)
Chore(deps): update dependency cypress to ^12.17.4 (main) (text#4692)
Chore(deps): update dependency @nextcloud/browserslist-config to v3 (main) (text#4693)
Fix(deps): update dependency @nextcloud/files to ^3.0.0-beta.19 (main) (text#4699)
Fix(deps): update dependency @nextcloud/vue to ^8.0.0-beta.5 (main) (text#4700)
Fix(deps): update dependency lib0 to ^0.2.83 (main) (text#4701)
Fix(deps): update tiptap to ^2.1.7 (main) (text#4702)
[main] Update nextcloud/ocp dependency (text#4714)
Fix: select all in code block (text#4719)
Fix: Use proper value for checking if editable (text#4721)
Chore(deps): update jest to ^29.6.4 (main) (text#4725)
Chore(deps): update dependency @vueuse/core to ^10.4.1 (main) (text#4726)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.10 to 9.6.11 (text#4727)
Chore(deps-dev): Bump psalm/phar from 5.14.1 to 5.15.0 (text#4728)
Chore(deps): update dependency vite-plugin-commonjs to ^0.9.0 (main) (text#4729)
[main] Update nextcloud/ocp dependency (text#4730)
Fix(cypress): close attachments file before proceeding (text#4734)
List fixes (text#4735)
Chore(deps): update dependency vue-demi to ^0.14.6 (main) (text#4736)
Ci: Add workflow to update node dist files on main (text#4749)
Fix(deps): update dependency @vueuse/shared to ^10.4.1 (main) (text#4751)
Fix(deps): update dependency mermaid to ^10.4.0 (main) (text#4752)
Fix(deps): update nextcloud (main) (text#4753)
[main] Update nextcloud/ocp dependency (text#4762)
Feat: hide workspace if no readme.md (text#4771)
Test(cypress): only run in parallel for pull requests (text#4772)
Use deployment environment for js build (text#4773)
Fix: Avoid layout jump with rich workspace (text#4776)
Change three dots to an ellipsis (text#4777)
Fixes and additions to editor API (text#4780)
Fix: deleting rich workspaces readme.md (text#4782)
[main] Update nextcloud/ocp dependency (text#4787)
Test(ci): use a single runner for cypress tests (text#4791)
Chore(deps-dev): bump phpunit/phpunit from 9.6.11 to 9.6.12 (text#4796)
Chore(deps): update jest (main) (text#4797)
Fix(deps): update yjs (main) (text#4798)
Fix(deps): update dependency uuid to ^9.0.1 (main) (text#4799)
Fix(deps): update tiptap to ^2.1.10 (main) (text#4801)
Chore(deps): update cypress (main) (major) (text#4802)
[main] Update nextcloud/ocp dependency (text#4806)
Chore(renovate): update nextcloud packages separately (text#4812)
Chore(deps): update dependency cypress to ^13.3.1 (main) (text#4816)
Fix(deps): update dependency @nextcloud/dialogs to ^4.2.1 (main) (text#4817)
Fix(deps): update dependency @nextcloud/files to ^3.0.0-beta.26 (main) (text#4818)
Fix(deps): update dependency @nextcloud/vue to ^8.0.0-beta.8 (main) (text#4819)
Chore(deps-dev): bump phpunit/phpunit from 9.6.12 to 9.6.13 (text#4820)
Fix 403 on close (text#4824)
Tests(frontend): cleanup old puppeteer based frontend test (text#4826)
Remove comma (text#4827)
Chore(deps): update dependency @nextcloud/eslint-config to ^8.3.0 (main) (text#4830)
[main] Update nextcloud/ocp dependency (text#4831)
Enh(SyncService): Throw error on save failure (text#4836)
Enh(editorApi): Introduce editor API version number (text#4840)
Fix: CSP issue on loading RichWorkspace component (text#4843)
Fix(editorApi): Use attachment resolver in MarkdownContentEditor (text#4844)
Ci(cypress): Fix failing cypress spec by more specific selector (text#4846)
Ci(cypress): Use cypress-split for running tests in parallel (text#4847)
Chore(deps): update vite (main) (text#4849)
Fix(deps): update dependency @nextcloud/auth to ^2.2.1 (main) (text#4850)
Fix: workspace cypress tests (text#4853)
Fix(deps): update dependency @nextcloud/logger to ^2.7.0 (main) (text#4854)
Fix(deps): update dependency lib0 to ^0.2.86 (main) (text#4855)
Fix(deps): update dependency markdown-it to ^13.0.2 (main) (text#4856)
Fix(deps): update tiptap to ^2.1.12 (main) (text#4857)
Fix(deps): update dependency lib0 to ^0.2.87 (main) (text#4858)
Chore(deps): update dependency cypress-split to ^1.15.4 (main) (text#4859)
Chore(deps): update dependency eslint-plugin-cypress to ^2.15.1 (main) (text#4860)
Chore(deps): update vueuse to ^10.5.0 (main) (text#4861)
Fix(deps): update dependency highlight.js to ^11.9.0 (main) (text#4862)
Fix(deps): update dependency mermaid to ^10.6.0 (main) (text#4863)
[main] Update nextcloud/ocp dependency (text#4869)
Fix(paste): collapse whitespace before pasting (text#4872)
Fix: Move new file action to F2V api (text#4873)
Feat(MenuBar): Make the menu bar `role=toolbar` and add focus handling (text#4874)
Fix(mermaid): Only switch back on failure if in preview mode (text#4875)
Cypress fixes (text#4876)
Fix(paste): paste plaintext with separate paragraphs (text#4877)
Chore(deps-dev): bump @babel/traverse from 7.23.0 to 7.23.2 (text#4884)
Fix: Rename rich workspace to folder description (text#4885)
Fix(makefile): Disable parallel execution of targets (text#4886)
Fix(readme): Clarify the dependency on the viewer app (text#4887)
Fix(menubar): Add aria-selected and aria-activedescendant to menu bar items (fix #3911) (text#4888)
Use `@nextcloud/dialogs` v5 (required for FilePicker on Nextcloud 28+) (text#4890)
[main] Update nextcloud/ocp dependency (text#4891)
Chore(dependencies): Bump @nextcloud/vue to 8.0.0-beta.9 (text#4893)
Chore(php): Add PHP 8.3 to test matrix (text#4894)
Fix line-through selector (text#4901)
Revert “ci: Skip some heading tests for now due to #4895” (text#4903)
Chore(deps): update dependency cypress to ^13.4.0 (main) (text#4906)
Fix(deps): update dependency @nextcloud/vue to ^8.0.0-beta.9 (main) (text#4907)
Fix(deps): update vue monorepo to ^2.7.15 (main) (text#4908)
Chore(deps): update dependency vite to ^4.5.0 (main) (text#4909)
Fix(deps): update dependency @nextcloud/moment to ^1.2.2 (main) (text#4910)
Chore(deps): bump browserify-sign from 4.2.1 to 4.2.2 (text#4911)
Fix(deps): update dependency @nextcloud/browser-storage to ^0.3.0 (main) (text#4913)
Fix(deps): update dependency @nextcloud/router to ^2.2.0 (main) (text#4914)
[main] Update nextcloud/ocp dependency (text#4927)
Fix(sync): prevent race condition by relying on autoincrement (text#4938)
Chore(DocumentService): Several code style fixes (text#4942)
Fix(menubar): Code style fixes (text#4945)
Fix(deps): update dependency @nextcloud/files to ^3.0.0-beta.27 (main) (text#4960)
Fix(deps): update dependency @nextcloud/vue to ^8.0.0-beta.10 (main) (text#4961)
[main] Update nextcloud/ocp dependency (text#4964)
Feat: bring back cypress command createDescription through UI (text#4965)
Fix(codeblock): Display mermaid graph per default in readonly mode (text#4971)
Chore(deps): update dependency cypress-split to ^1.15.6 (main) (text#4976)
Fix(deps): update dependency @nextcloud/dialogs to ^5.0.2 (main) – autoclosed (text#4977)
Fix(deps): update dependency @nextcloud/files to ^3.0.0 (main) (text#4978)
Fix(deps): update dependency @nextcloud/vue to ^8.0.1 (main) (text#4979)
Fix(deps): update dependency mermaid to ^10.6.1 (main) (text#4980)
Chore(deps): update dependency cypress to ^13.5.0 (main) (text#4981)
Chore(deps): bump axios from 1.4.0 to 1.6.1 (text#4982)
Chore(deps): update vueuse to ^10.6.0 (main) (text#4983)
[main] Update nextcloud/ocp dependency (text#4994)
Fix: Limit asset/source loader rule to inline svg embeddings from @mdi/svg (text#4997)
Fix: Add migration to drop conflicting index ts_session (text#4998)
Chore(deps): update dependency cypress to ^13.5.1 (main) (text#5004)
Chore(deps): update dependency cypress-split to ^1.15.8 (main) (text#5005)
Chore: Bump @nextcloud/vue to v8.2.0 (text#5006)
Chore(deps): update vueuse to ^10.6.1 (main) (text#5007)
Chore(deps): update vite (main) (text#5008)
Chore(deps): update dependency vite to v5 (main) (text#5009)
[main] Update nextcloud/ocp dependency (text#5015)
Fix: Get file from share link instead of user directory in case of no access (text#5017)
Fix(ImageView): Fix detection of editable editor (text#5020)
Fix: bring back rich workspace on public share links of folders (text#5022)
Chore(CI): Adjust testing matrix for Nextcloud 28 on stable28 (text#5023)
Rich workspace polishing (text#5025)
Ci: Enable node build on 28 (text#5031)
Chore(deps): update dependency vite to ^5.0.2 (text#5032)
Fix(deps): update yjs (text#5033)
Chore(deps): update dependency cypress to ^13.6.0 (text#5035)
Chore(deps): update dependency cypress-split to ^1.17.0 (text#5036)
Update nextcloud/ocp dependency (text#5039)
Fix(deps): update dependency @nextcloud/dialogs to ^5.0.3 (text#5044)
Revert “ci: Skip failing link to directory test” (text#5047)
Chore(deps): update dependency vite to ^5.0.3 (text#5050)
Fix: Use document id in url (text#5052)
Refactor attachment loading (text#5053)
Lazy load text-viewer and text-files (text#5056)
Run cypress against stable28 branch (text#5057)
Chore(deps): update dependency cypress-split to ^1.17.1 (text#5061)
Chore(deps): update dependency vite to ^5.0.4 (text#5062)
Fix(css): Fix print view in viewer and single-file share (text#5064)
Revert “tmp: skip known attachment failures” (text#5067)
Fix(deps): update tiptap to ^2.1.13 (text#5072)
Fix(deps): update dependency @nextcloud/vue to ^8.3.0 (text#5073)
Update nextcloud/ocp dependency (text#5078)
Handle null file in RichWorkspace header (text#5088)
Chore(deps): Move `cypress-visual-regression` to dev dependencies (text#5091)
Chore(deps): update dependency vite to v5.0.5 [security] (text#5094)
Feat(editor): Enable gapcursor, allows to put cursor between images (text#5096)
Chore(deps): bump @nextcloud/eslint-config from 7.0.2 to v8 (master) (twofactor_totp#1397)
Chore(deps): bump jest family (master) (major) (twofactor_totp#1400)
Fix(deps): bump @nextcloud/initial-state from 1.2.1 to v2 (master) (twofactor_totp#1401)
Fix(deps): bump @nextcloud/password-confirmation from 1.0.1 to v4 (master) (twofactor_totp#1402)
Feat(deps): Add Nextcloud 28 support on master (twofactor_totp#1404)
Chore(translations): Remove custom backport file to follow the main pattern (twofactor_totp#1405)
Chore: update workflows from templates (twofactor_totp#1406)
Chore: update node engines to next LTS (twofactor_totp#1408)
Chore(deps): Bump tough-cookie from 4.0.0 to 4.1.3 (twofactor_totp#1409)
Chore(renovate): fix jest family (twofactor_totp#1411)
Ci(test): remove nextcloud/ocp before running acceptance tests (twofactor_totp#1413)
Ci: create npm-audit-fix.yml (twofactor_totp#1426)
[master] Fix npm audit (twofactor_totp#1430)
Chore(deps): bump actions/checkout digest to f43a0e5 (master) (twofactor_totp#1434)
Chore(deps): bump actions/setup-node digest to 5e21ff4 (master) (twofactor_totp#1435)
Chore: Add PR feedback automation (twofactor_totp#1438)
Chore(release): v10.0.0-beta2 (twofactor_totp#1441)
Chore(deps): bump @nextcloud/browserslist-config from 2.3.0 to v3 (master) (twofactor_totp#1442)
Chore(deps): bump @nextcloud/webpack-vue-config from 5.5.1 to v6 (master) (twofactor_totp#1443)
Move psalm and cs-fixer to vendor-bin and fix related issues (twofactor_totp#1446)
Chore(deps): bump codecov/codecov-action digest to eaaf4be (master) (twofactor_totp#1451)
Chore(deps): bump shivammathur/setup-php digest to 7fdd3ec (master) (twofactor_totp#1452)
[master] Fix npm audit (twofactor_totp#1454)
[master] Fix npm audit (twofactor_totp#1460)
Bump behat/behat from 3.0.15 to 3.11.0 in /tests (updater#422)
Bump bamarni/composer-bin-plugin from 1.5.0 to 1.8.2 (updater#444)
Generate URLs via JavaScript (updater#448)
Enh(execute): Let user know how to reset when a step has been cancelled in progress (updater#472)
Chore: update workflows from templates (updater#473)
Fix: update testing range for 25, 26 and 27, and update dependencies (updater#475)
Strong type classes (updater#478)
Create pr-feedback.yml (updater#485)
Fix(integrity): expect pkg mgmt files (updater#488)
Chore: use Nextcloud coding standards v1.1.1 (updater#512)
Chore(workflow): Upgrade CI workflows (updater#513)
Prevent directory modifications when iterating (updater#515)
Revert “Prevent directory modifications when iterating” (updater#518)
Fix 404 on blank.mp4 (viewer#1636)
Feat(deps): Add Nextcloud 28 support on master (viewer#1667)
Chore(deps): Bump @nextcloud/event-bus from 3.0.2 to 3.1.0 (viewer#1670)
[master] Fix npm audit (viewer#1674)
Lazy load components (viewer#1675)
Feat: add bundle size analyzer (viewer#1676)
Chore(deps): Bump shivammathur/setup-php from 2.25.1 to 2.25.2 (viewer#1680)
Chore: update workflows from templates (viewer#1682)
Chore(deps): Bump @fontsource/roboto from 4.5.8 to 5.0.1 (viewer#1685)
Chore(deps-dev): Bump @types/dockerode from 3.3.17 to 3.3.18 (viewer#1686)
Chore(deps): Bump @nextcloud/auth from 2.0.0 to 2.1.0 (viewer#1688)
Chore: update workflows from templates (viewer#1690)
Chore(deps): Bump skjnldsv/read-package-engines-version-actions from 1.2 to 2.1 (viewer#1692)
Chore(deps): Bump shivammathur/setup-php from 2.22.0 to 2.25.2 (viewer#1693)
Chore: update workflows from templates (viewer#1694)
Fix: different cache path leads to cache miss (viewer#1695)
Chore(deps): update cypress and associates (viewer#1696)
Chore(deps-dev): Bump nextcloud/coding-standard from 1.1.0 to 1.1.1 (viewer#1698)
Chore(deps): Bump @fontsource/roboto from 5.0.1 to 5.0.2 (viewer#1699)
Chore(deps-dev): Bump tslib from 2.5.0 to 2.5.3 (viewer#1700)
Chore(deps): Bump skjnldsv/read-package-engines-version-actions from 2.1 to 2.2 (viewer#1705)
Fix size of progress container (viewer#1706)
Use new node event names (viewer#1707)
Use etag as cache buster (viewer#1709)
Chore(deps): Bump peter-evans/create-or-update-comment from 3.0.1 to 3.0.2 (viewer#1712)
Chore(deps-dev): Bump @types/dockerode from 3.3.18 to 3.3.19 (viewer#1725)
Chore(deps): Bump filerobot-image-editor from 4.4.0 to 4.5.0 (viewer#1726)
Chore(deps): Bump @fontsource/roboto from 5.0.2 to 5.0.3 (viewer#1728)
Chore(deps): Bump actions/checkout from 3.5.2 to 3.5.3 (viewer#1733)
Chore(deps): Bump shivammathur/setup-php from 2.25.2 to 2.25.4 (viewer#1734)
Chore(deps): Bump cypress-io/github-action from 5.8.1 to 5.8.2 (viewer#1737)
Chore(deps): Bump peter-evans/create-pull-request from 5.0.1 to 5.0.2 (viewer#1738)
Chore(deps): Bump cypress-io/github-action from 5.8.2 to 5.8.3 (viewer#1739)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.8 to 9.6.9 (viewer#1740)
Chore(deps): Bump @nextcloud/router from 2.1.1 to 2.1.2 (viewer#1742)
Chore(deps): Bump relative-ci/agent-action from 2.1.4 to 2.1.5 (viewer#1743)
Chore: update node engines to next LTS (viewer#1744)
Chore(deps): Bump @nextcloud/dialogs from 4.0.1 to 4.1.0 (viewer#1745)
Chore(deps): Bump webdav from 4.11.2 to 5.2.1 (viewer#1746)
[master] Fix npm audit (viewer#1749)
[master] Update cypress snapshots (viewer#1760)
Feat(cypress): standard workflow (viewer#1761)
Fix video player unusable on ios (viewer#1763)
Updating cypress.yml workflow from template (viewer#1764)
Chore(deps): Bump skjnldsv/read-package-engines-version-actions from 2.1 to 2.2 (viewer#1768)
Chore(deps): Bump cypress-io/github-action from 5.8.1 to 5.8.3 (viewer#1769)
Chore(deps): Bump actions/checkout from 3.5.2 to 3.5.3 (viewer#1770)
Feat: more typescript migration (viewer#1773)
[master] Fix npm audit (viewer#1775)
Chore(deps): Bump actions/setup-node from 3.6.0 to 3.7.0 (viewer#1781)
Add option to disable sidebar (viewer#1782)
Chore(deps): Bump @nextcloud/axios from 2.3.0 to 2.4.0 (viewer#1785)
[master] Update cypress snapshots (viewer#1792)
[master] Fix npm audit (viewer#1795)
Send CSRF token in rawStat (viewer#1797)
Default to source if fileid is undefined (viewer#1806)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.9 to 9.6.10 (viewer#1814)
[master] Update cypress snapshots (viewer#1815)
Do not translate file alt-text (viewer#1818)
Fix fullscreen on ios (viewer#1819)
Chore(deps): Bump webdav from 5.2.2 to 5.2.3 (viewer#1825)
Chore(deps): Bump relative-ci/agent-action from 2.1.5 to 2.1.6 (viewer#1832)
Chore(deps): Bump shivammathur/setup-php from 2.25.4 to 2.25.5 (viewer#1834)
Feat: Compare files side by side (viewer#1835)
Chore(deps-dev): Bump jest from 29.5.0 to 29.6.2 (viewer#1839)
Chore(deps-dev): Bump tslib from 2.6.0 to 2.6.1 (viewer#1843)
Fix: Avoid issues when switching between versions (viewer#1851)
Chore(deps): Bump @fontsource/roboto from 5.0.3 to 5.0.8 (viewer#1857)
Chore(deps): Bump camelcase from 7.0.1 to 8.0.0 (viewer#1859)
Chore(deps): Bump @nextcloud/files from 3.0.0-beta.10 to 3.0.0-beta.14 (viewer#1860)
Chore(deps-dev): Bump eslint-plugin-cypress from 2.13.3 to 2.14.0 (viewer#1861)
Fix panning of zoomed images (viewer#1863)
Chore(deps): Bump actions/setup-node from 3.7.0 to 3.8.0 (viewer#1864)
Chore(deps-dev): Bump typescript from 5.1.5 to 5.1.6 (viewer#1866)
Chore(deps-dev): Bump @nextcloud/stylelint-config from 2.3.0 to 2.3.1 (viewer#1867)
Bump various dependencies and fix cypress (viewer#1868)
[master] Update cypress snapshots (viewer#1870)
Feat(f2v): Move to new file actions api (viewer#1878)
Improve image zooming (scroll wheel) (viewer#1887)
Chore(deps): Bump cypress-io/github-action from 5.8.3 to 6.0.1 (viewer#1895)
[master] Update cypress snapshots (viewer#1896)
Chore: replace dependabot by renovate (viewer#1900)
Chore(deps-dev): Bump vimeo/psalm from 4.30.0 to 5.15.0 (viewer#1902)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.10 to 9.6.11 (viewer#1903)
Chore(deps): update dependency cypress to ^12.17.4 (master) (viewer#1905)
Fix(deps): update dependency @nextcloud/files to ^3.0.0-beta.19 (master) (viewer#1906)
Chore(deps): Bump cypress-io/github-action from 6.0.1 to 6.1.0 (viewer#1912)
Chore(deps): Bump actions/checkout from 3.5.3 to 3.6.0 (viewer#1913)
Chore(deps): update typescript (master) (viewer#1918)
Fix(deps): update dependency @nextcloud/vue to ^8.0.0-beta.4 (master) (viewer#1924)
Chore(deps): update dependency jest to ^29.6.4 (master) (viewer#1925)
Fix(deps): update dependency @nextcloud/dialogs to ^4.2.0-beta.4 (master) (viewer#1927)
Chore(deps): update dependency @nextcloud/browserslist-config to v3 (master) (viewer#1928)
Fix: default action value & image public page style (viewer#1929)
Follow-up to: fix: default action value & image public page style (viewer#1942)
Chore(deps): Bump relative-ci/agent-action from 2.1.6 to 2.1.7 (viewer#1943)
Fix(deps): update dependency webdav to ^5.3.0 (master) (viewer#1954)
Fix(deps): update nextcloud (master) (viewer#1955)
Fix: add icon in visible files action (viewer#1965)
Chore: migrate cypress to ts (viewer#1968)
Chore(deps): Bump actions/upload-artifact from 3.1.2 to 3.1.3 (viewer#1969)
Chore(deps): Bump cypress-io/github-action from 6.1.0 to 6.5.0 (viewer#1970)
Fix(deps): update dependency filerobot-image-editor to ^4.5.2 (master) (viewer#1971)
Chore(deps): Bump shivammathur/setup-php from 2.25.5 to 2.26.0 (viewer#1974)
Chore(deps-dev): Bump phpunit/phpunit from 9.6.11 to 9.6.13 (viewer#1977)
Chore(deps): Bump actions/checkout from 3.6.0 to 4.1.0 (viewer#1978)
Fix: standalone check (viewer#1980)
Chore(deps): Bump relative-ci/agent-action from 2.1.7 to 2.1.9 (viewer#1981)
Ci: Add workflow to update node dist files on master (viewer#1982)
Chore(deps): Bump @cypress/request, @nextcloud/cypress and cypress (viewer#1983)
Chore(deps): Bump relative-ci/agent-action from 2.1.9 to 2.1.10 (viewer#1984)
Chore(deps): update dependency @types/dockerode to ^3.3.20 (master) (viewer#1987)
Chore(deps): update dependency eslint-plugin-cypress to ^2.15.1 (master) (viewer#1988)
Fix(deps): update dependency @mdi/svg to ^7.3.67 (master) (viewer#1989)
Chore(deps): update dependency dockerode to v4 (master) (viewer#1991)
Fix(deps): update dependency @nextcloud/dialogs to v5 (master) (viewer#1992)
[master] Fix npm audit (viewer#2001)
Fix(deps): update nextcloud (master) (viewer#2003)
Chore: recompile assets (viewer#2006)
Chore(deps): Bump actions/checkout from 4.1.0 to 4.1.1 (viewer#2007)
Chore(deps): Bump peter-evans/create-or-update-comment from 3.0.2 to 3.1.0 (viewer#2009)
Fix(readme): Remove unnecessary instruction to enable the app (viewer#2010)
Chore(deps): update dependency @types/dockerode to ^3.3.21 (master) (viewer#2011)
Chore(deps): update dependency cypress to ^13.3.2 (master) (viewer#2012)
Fix(deps): update dependency @skjnldsv/vue-plyr to ^7.4.0 (master) (viewer#2013)
[master] Fix npm audit (viewer#2027)
Chore(deps): Bump actions/setup-node from 3.6.0 to 4.0.0 (viewer#2028)
Chore(deps): Bump tj-actions/changed-files from 39 to 40 (viewer#2031)
Chore(deps): Bump browserify-sign from 4.2.1 to 4.2.2 (viewer#2032)
Cancel queued cypress jobs when repushing (viewer#2034)
Chore(deps): update dependency cypress to ^13.4.0 (master) (viewer#2035)
Fix(deps): update dependency vue to ^2.7.15 (master) (viewer#2036)
Feat: enable viewer for image/emf (viewer#2065)
Chore: Bump @nextcloud/vue to v8.2.0 (viewer#2067)
Chore(CI): Adjust testing matrix for Nextcloud 28 on stable28 (viewer#2070)
Master] Fix npm audit (viewer#2073)
Fix(video): video fullscreen on ios devices (viewer#2080)
Revert broken automatic build and update js bundles (viewer#2084)
Feat(viewer): allow async handler components (viewer#2086)
Fix: Sorting filenames containing numbers (viewer#2089)
Fix: Disable view file in trashbin (viewer#2094) var/softaculous/ocart/changelog.txt 0000755 00000011455 15234346077 0013527 0 ustar 00 ## v1.5.6.4 (23rd April 2014)
#### Bugs fixed
* Fixed issue with images containing the (used in xml etc) string in the source and not uploading. Now only checks long php tag [**view**](https://github.com/opencart/opencart/commit/b04cbbcc40308c47e2d77460358b6450e9ee0e5b)
* Fixed language string for "error_file_type" in admin filemanger/upload method [**view**](https://github.com/opencart/opencart/commit/b04cbbcc40308c47e2d77460358b6450e9ee0e5b)
* Fixed upgrade issues caused by PHP consider 0 equal to null [**view**](https://github.com/opencart/opencart/commit/d6d5473e4d69e9f9f0679e3445899a3bc37a86f1)
* Updated SQL query in getTotalEmailsByProductsOrdered and getEmailsByProductsOrdered to use the limits in the correct method [**view**](https://github.com/opencart/opencart/commit/c5feafce559c81a44ab11315365750ed9b4a0cb1)
#### Changes
* Updated SQL mode in install SQL file and MySQLi adapter to accommodate servers that have strict mode enabled by default [**view**](https://github.com/opencart/opencart/commit/70298dd3c21430935659745436fe1f8709483718)
* Removed Amazon payments xls file from system folder as it can be downloaded online and has no place in the code framework [**view**](https://github.com/opencart/opencart/commit/70298dd3c21430935659745436fe1f8709483718)
* Improved currency update method to include curl timeouts, to handle occasional timeout issues [**view**](https://github.com/opencart/opencart/commit/bda066fdbde486107337ca1069bcba0dabecc67f)
#### Added
* Nothing
## v1.5.6.3 (15th April 2014)
#### Bugs fixed
* Image manager issue where the thumbnails failed to load [**view**](https://github.com/opencart/opencart/commit/b84978b5ca6683d4c62951256ef25f68a685ce92)
* PayPal Express totals calculation, fixed incorrect variable names [**view**](https://github.com/opencart/opencart/commit/78c4e9ac0f8fe51c69a1ddc1fb443dae2a5934f7)
* Fixed report for coupons to search the history table instead for start/end filters [**view**](https://github.com/opencart/opencart/commit/580ed0482f804a37e13fcab5363a38a76ce4feb9)
#### Changes
* Allow arrays to be written to the log file [**view**](https://github.com/opencart/opencart/commit/1e430128cd055498666fd5a2be2267b933a4b2c8)
* Check uploaded files for php content, reduce the risk of image files containing php and running on insecure servers [**view**](https://github.com/opencart/opencart/commit/c11ef46681b2c2d87b6c3fd7b1394f53b6b72e45)
#### Added
## v1.5.6.2 (10th April 2014)
#### Bugs fixed
- **PayPal Express Checkout** Added error handling if no shipping options for weight based shipping are found [**view**](https://github.com/opencart/opencart/commit/201004c7dcbec43d17477a099fc8522f56537c00)
- **PayPal Express Checkout** Fixed message when cart totals do not match order amounts [**view**](https://github.com/opencart/opencart/commit/1bf9db4306223760ba00a1a6bd8524cb1f96128b)
- **PayPal Express Checkout** Fixed state issue, changed variable from PAYMENTREQUEST_0_SHIPTOCOUNTRYCODE to PAYMENTREQUEST_0_SHIPTOSTATE [**view**](https://github.com/opencart/opencart/commit/ff2705e21aa3062db53a4a39e5651d231af20e9c)
- **PayPal Express Checkout** Added fix for to allow for download only items and PayPal guest checkout. Guest checkout with no shipping option will not return any address data for the checkout so exceptions for no payment address data have been handled [**view**](https://github.com/opencart/opencart/commit/0a94a4073743cced97e0944d702425c7c57cf866)
- Fix for from and mail-to mail headers [**view**](https://github.com/opencart/opencart/commit/03bc37b4303bc3a9e9b6d9d34d604f0126aa61d1)
#### Changes
* **Klarna Account** gateway minimum amount update [**view 1**](https://github.com/opencart/opencart/commit/0c579e27168db635e43a0d9d2562c4bb5b26f464) [**view 2**](https://github.com/opencart/opencart/commit/d4ee47aedd456828c656075da6aecc345365d4ff)
* **PayPal Express Checkout** wrapped logging calls with if statements to check if debug is enabled in the settings [**view**](https://github.com/opencart/opencart/commit/765ea85956ca1d50aea5c8108c7c39a6dd4ad765)
* **PayPal Express Checkout** Updated SQL check for zone information to include code and title, covers differences between data response for different country formats [**view**](https://github.com/opencart/opencart/commit/395d4cc04c26b12dfa9a427142a9890876ceecf7)
* Cookies changed to HttpOnly [**view**](https://github.com/opencart/opencart/commit/53c376abb238a5d0bb14aa5e1a39f0601a4c6b9f)
* Changed UTF8 helper functions to new code [**view**](https://github.com/opencart/opencart/commit/d55aa27958895ed4f3141d4cffc94c7589aae48c)
* Updated OpenBay Pro to latest v2334 [**view**](https://github.com/opencart/opencart/pull/1327)
#### Added
* New checks during install to check for iconv function or mbstring extension as used by UTF8 helper [**view**](https://github.com/opencart/opencart/commit/8f4a58899e5ca0316b3e3be49a1171ccf3b0db26) var/softaculous/cmsimple/changelog.txt 0000644 00000004467 15234351174 0014224 0 ustar 00 Most important News CMSimple 5.22 => 5.23 (2026-07-14):
Fixed login link – logout was not working
Bug fix changing the page heading for the first page in the editor
Resolved occasional PHP error in the CMSimple mailform
Submenus:
=>
due to invalid nested headings
Adjusted submenus in the cmsimple_default template
Default content in download: CMSimple 5 => CMSimple
Most important News CMSimple 5.21 => 5.22 (2026-06-16):
Issues with lowercase functional menu level 1 pagenames (e.g., "settings") fixed
Plugin version numbers now displayed in sysinfo even when update notifications are disabled
curl_close() called only if PHP version < 8.0 (deprecated as of PHP 8.5.3)
CMSimple Mailform: Changed srand((double) ... ) to srand((float) ... ) to fix "unknown error" in PHP 8.3++
Pluginloader saveform action: added &normal
Restricted splitToc function to ml1 and introduced li_ prefix for class names
Improved backend and file browser templates
Improved CMS browser template
./?sitemap now consistently redirects to ./?&sitemap (including the page name "sitemap"), the sitemap appears
Resolved warnings regarding expired sessions when CSRF protection is disabled
Improved messages, if one tried to login with wrong password
Most important News CMSimple 5.20 => 5.21 (2026-01-05):
Login Limiter - Loginlock after 3 failed attempts, configurable duration
Improved admin menu (for narrow displays)
Improved login form (for narrow displays)
loginlink() displays logout link when logged in
preparation of the 404 page for PageXplorer plugin
Improved filebrowser- and backend template (for narrow displays and preparation of the menus for PageXplorer plugin)
Some minor improvements in the backend
Fixed issues with CSRF protection enabled
Most important News CMSimple 5.19 => 5.20 (2025-07-17):
PHP warnings for pages without names, such as sitemaps, have been removed
Some code cleaning (xhpages => cmsimplepages)
Data security has been increased; updating is recommended
Most important News CMSimple 5.18 => 5.19 (2025-03-14):
Support for .webp and .avif image files was incomplete and resulted in PHP error messages under certain conditions.
Further improvements to the file browser
Updating all CMSimple installations is recommended. var/softaculous/tcexam/changelog.txt 0000644 00000005225 15234351510 0013657 0 ustar 00 17.2.0 (2026-06-25)
- Fixed creating and importing questions and answers on databases using the utf8mb4 character set (issue #461); the binary uniqueness-check collation is now configurable via the new K_MYSQL_QA_BIN_COLLATION constant.
17.0.0 (2026-06-23) [BREAKING CHANGE]
- Major modernisation release. Please read UPGRADE.md before updating an existing installation.
- PHP 8.2 or newer is now required.
- Dependencies are now managed with Composer; running "composer install" is required before use.
- Externalised the previously bundled libraries to Composer packages: PHPMailer, phpCAS, RADIUS and TCPDF.
- Replaced TCPDF with the tc-lib-pdf engine (plus tc-lib-barcode, tc-lib-color and tc-lib-file) for all PDF generation, OMR answer sheets, QR codes and the colour picker.
- PDF fonts are now generated at install time into the vendor directory; the bundled 27 MB fonts/ folder has been removed.
- Upgraded PHPMailer to the 7.x series.
- Removed the legacy register-globals emulation; all controllers now read request inputs explicitly from $_POST/$_REQUEST.
- Security hardening: install-time random K_RANDOM_SECURITY with fail-closed PDF result tokens, fixed SQL injection and XSS issues, IDOR fix for non-admin editors, safer file/URL handling and CSPRNG-based codes.
- Accessibility overhaul (WCAG 2.1 level AA): semantic landmarks, skip links, ARIA roles, labelled forms and screen-reader cues.
- Migrated the HTML output from XHTML 1.0 Strict to HTML5.
- Replaced the virtual keyboard and old Internet Explorer workarounds; added a new calendar widget and a native HTML5 colour picker.
- Added a PHPUnit test suite plus Docker-based integration tests against MySQL/MariaDB and PostgreSQL.
- Added a Docker runtime (Dockerfile + docker-compose) for evaluation and deployment.
- Added build tooling: Makefile targets, GitHub Actions CI and mago lint/format.
- Internationalisation: kept the TMX format and added a "make lang" build/validation step for the translation caches.
- New configuration constants: K_USRREG_ALLOWED_GROUPS, K_CAS_SERVICE_BASE_URL, K_FILE_ALLOWED_PATHS, K_FILE_ALLOWED_HOSTS and several K_PDF_* options.
- Overhauled the documentation: rewritten README, INSTALL, UPGRADE, CONTRIBUTING, SECURITY and CODE_OF_CONDUCT, and consolidated the installation instructions into a single up-to-date manual (install/README.md).
*************************************************
16.6.3 (2026-04-16)
- Fix potential security vulnerability issues.
16.6.2 (2026-03-08)
- Add K_USRREG_ALLOWED_GROUPS configuration entry to set the allowed registration groups.
- Sanitize fields and additional checks.
16.6.1 (2026-03-04)
- Update TCPDF.
- Sanitize XML fields. var/softaculous/elgg3/changelog.txt 0000644 00000012474 15234363670 0013415 0 ustar 00 7.0.3 (2026-07-10)
Contributors
Jerôme Bakker (1)
Bug fixes
ckeditor: use correct version for GPL license 69449138e closes #15108
7.0.2 (2026-07-02)
Contributors
Jerôme Bakker (4)
Jeroen Dalsem (2)
Update notes
Several small fixes
7.0.1 (2026-06-12)
Contributors
Jeroen Dalsem (12)
Jerôme Bakker (9)
XananasX (1)
Bug fixes
discussion: don't show group selector on discussion edit form 8a2c95c24
river: user join river items are visible e2deefd54 closes #15092
js:
tab switches and ckeditor loading trigger lightbox resize 509c20909 closes #15072, #15071
replaced dynamic imports in inline scripts because of Safari issues fa114ccf7
theme: unable to correctly save theme color as an admin 684b22c6f closes #15080
css: table background color not using a css variable 6c1e6e8a9
discussions: comment permissions moved to container logic check d18a027af
blog: comment permissions moved to container logic check 6593ac32e
webservices: improved PAM authentication handling 5f874af27
7.0.0 (2026-05-22)
Contributors
Jeroen Dalsem (26)
Jerôme Bakker (25)
Chris Funderburg (2)
Features
system_log: setting to enable client IP address logging 146a923f5
icons: FontAwesome icons use .fa class for default icon styling 2cc0b26c8
views: auto detect listing getter in generic listing 2008c96cb
Bug fixes
plugins: improved handling of plugin start issues b9bbf0875 closes #15040
groups:
search page handles bad input ec6375239 closes #15047
use consistent route name for group membership requests aa60f3ebe
email: set correct email sender address fe9050781
di: improved handling of unknown public services b972e044b
forms: autocomplete item icons behave consistently f6a0483de
system_log: handle unknown service during plugin activation 1763d6244
profile:
tighten up the check a bit 9e6c294bd
handle null ban_reason in profile/wrapper view 8161d3788
icons: no longer mapping OTF files as font awesome zips do not contain them 5f557ed84
css:
search topbar cancel icon conflicts with search icon 472042a42
font awesome toggle icon now uses a before pseudo element 7bbfe11d5 closes #15042
improved various dark mode colors 9a3b0211a
actions: JsonDownloadAction controller always pretty prints json 55999b4fa
images: prevent OOM issues when images are too large to resize 0580c4c1d
install: prevent access to elgg-config directory 71d0bb571
7.0.0-rc.1 (2026-04-01)
Contributors
Jeroen Dalsem (54)
Jerôme Bakker (37)
Features
css:
added dark mode features and color scheme 414199e61 closes #14284
font awesome icon library updated to v7 1e7543e4f closes #14847
ckeditor: updated to ckeditor v47 bebfed236
notifications: allow multiple notification handler on an event ff3ab23cc closes #14896
webservices: HTTP response codes reworked ee72fff37 closes #14790
config: default minimal password length now is 16 9e31c3626 closes #14999
views: elgg_view_page shell parameter will auto fallback from walled_garden 3fdf5bc8c
actions:
generic Entity Edit action support passing a custom forward_url 0489ba163
added helper classes for download actions 3a3a06eeb closes #14923
routing: trigger an event when no route could be found 1e4389a96 closes #14932
activity: added entity capability to indicate entities could have activity f3ec7f94b closes #14502, #12514
email: you can now pass an array of factory options to elgg_send_email() 73c906841
mail: replace laminas/laminas-mail with symfony/mailer d89f4a348 closes #14776
tests: updated PHPUnit to v12.5 0a8e490ec
php: updated minimal requirement to PHP 8.3 and added tests for 8.5 8c696ee8d
content: added generic content controller d9896aadc closes #14867
widgets: widget controls are now always visible and presented in a dropdown 7af7e6aaf closes #14927
input:
entity pickers now can have sortable value lists ab7e695bd closes #14933
entitypickers now support saving value as a singular instead of array e7953cf44 closes #14930
likes: likes details can be enabled for everybody 750abaf1b closes #14943
discussions: automatically close discussions after x days b8b7a368f
core:
developer log to screen now goes to browser console b671a79d0 closes #14799
elgg_entity_gatekeeper now returns entity 0815a6f07 closes #14931
added helper function elgg_is_cli() 63f361e92 closes #14922
Bug fixes
views: elgg_get_excerpt removes some useless whitespaces df0031fae
account: always report success when requesting a new password e5cb56a8b closes #15000
core: router will throw correct method not allowed exception if needed 1876c2a2a closes #15001
routing: apply maintenance gatekeeper on all requests d4adaa29c
Breaking Changes
externalpages: plugin and external page entities have been reworked 9cdf0de89 closes #7990
core: it is no longer possible to directly create ElggObject entities 2b17076c7
plugins: unified entity actions bb1ea3425 closes #14764
Removed
webservices: segments URL part in REST endpoint 29286a5ee closes #15016
cache: built-in support for Redis and Memcached has been removed 7b2d6158e
css: CSS Crush preprocessing has been removed 7301391b5
profile: the Twitter profile field has been removed 6095844fb closes #14925
var/softaculous/lime5/changelog.txt 0000644 00000014047 15234377671 0013433 0 ustar 00 Changes from 6.17.11 (build 260706) to 6.17.12 (build 260721) July 21, 2026
-Fixed issue #LE-827: Interface language auto detect inconsistency when switching editor and error in account settings (#5142) (haythem chibani)
-Fixed issue #AT-2176: Question validation tip value is not exported for additional languages when exporting as txt (#5143) (Rami S. Zaki)
-Fixed issue #20606: Response table schema is incorrect when activating a survey after previewing (#5147) (haythem chibani)
#Updated translation: Swahili by FredaM
#Updated translation: Portuguese (Portugal) by ricardo.santos
#Updated translation: Polish by elissa
#Updated translation: Polish (Informal) by elissa
#Updated translation: Italian by lfanfoni
#Updated translation: Italian (Informal) by lfanfoni
#Updated translation: Galician by Calidonia, Gronnd
#Updated translation: Dutch by Han
#Updated translation: Dutch (Informal) by Han
#Updated translation: Croatian by rovinj
Changes from 6.17.10 (build 260622) to 6.17.11 (build 260706) July 6, 2026
-Fixed issue #AT-2010: LS6 added capability to check items across multiple pages (#5067) (Patricia Stell)
-Fixed issue #20561: Editing the default answers for a multiple-choice question results in a database error (#5076) (twilligls)
#Updated translation: Valencian by vbraque
#Updated translation: Turkish by bulent, c_schmitz, kayazeren
#Updated translation: Hungarian by kkd
#Updated translation: Hungarian (Informal) by kkd
#Updated translation: Dutch by Han
#Updated translation: Dutch (Informal) by Han
#Updated translation: Catalan by c_schmitz, jmontane, qualitatuvic, valdomir
Changes from 6.17.9 (build 260619) to 6.17.10 (build 260622) June 22, 2026
+New feature #12393: 'Check all' boxes in data integrity check (Carsten Schmitz)
-Fixed issue: navbar hover and focus styles not fitting with light buttons (#5069) (Tim Willig)
#Updated translation: Polish by elissa
#Updated translation: Polish (Informal) by elissa
#Updated translation: Hungarian by c_schmitz, johnyh, kkd
#Updated translation: Hungarian (Informal) by c_schmitz, kkd
#Updated translation: Dutch by Han
#Updated translation: Dutch (Informal) by Han
#Updated translation: Croatian by rovinj
Changes from 6.17.8 (build 260616) to 6.17.9 (build 260619) June 17, 2026
-Fixed issue AT-2090: [security] SQL injection vulnerability in statistics (Carsten Schmitz)
#Updated translation: Portuguese (Portugal) by ricardo.santos
#Updated translation: Italian by lfanfoni
#Updated translation: Italian (Informal) by lfanfoni
Changes from 6.17.7 (build 260610) to 6.17.8 (build 260616) June 16, 2026
-Fixed issue #20560: Automatically writing the Allowed hosts file may fail silenty (Carsten Schmitz)
#Updated translation: Polish by elissa
#Updated translation: Polish (Informal) by elissa
#Updated translation: Czech by jelen1
Changes from 6.17.6 (build 260604) to 6.17.7 (build 260610) June 10, 2026
-Fixed issue: [security] Hardening CPDB response link deletion (Carsten Schmitz)
-Fixed issue #CT-1758: Decrypting encrypted responses in the new editor (#5034) (Rami)
-Fixed issue #20549: [security] SQL Injection in RemoteControl invite_participants and remind_participants (#5031) (Denis Chenu)
-Fixed issue #20548: [security] Host header injection in password reset (#5032) (Carsten Schmitz)
#Updated translation: Italian by c_schmitz, drsi.staff, lfanfoni, lfortunato, myliserta, ritapas
#Updated translation: Italian (Informal) by c_schmitz, ciampix, lfanfoni, murya, myliserta
#Updated translation: French (France) by b00z00, DenisChenu, GuillaumeZ6, jayce, pasglop
#Updated translation: Dutch by Han
#Updated translation: Dutch (Informal) by Han
Changes from 6.17.5 (build 260527) to 6.17.6 (build 260604) June 4, 2026
-Fixed issue: updates through ComfortUpdate are no longer incorrectly marked as unstable (Patrick Teichmann)
-Fixed issue: [security] Vulnerability in twig template engine and deprecated twig attribute calls - this fix requires the minimum PHP version to be raised to 8.1. (#5026) (Carsten Schmitz)
-Fixed issue #20489: [security] Publicly reachable file upload via RemoteControl API (#4889) (Denis Chenu)
#Updated translation: Valencian by c_schmitz, joamuran, sergarb1, valdomir, vbraque
#Updated translation: Spanish (Spain) by aesteban, artasom, atavei, c_schmitz, Ignacio, ireneoh, jmlopez, jparis, larjona, naiara.maya, Nodens, oleggorfinkel, perexat, segui, valdomir, xastrefernando, xtingray
#Updated translation: Portuguese (Portugal) by ricardo.santos
#Updated translation: Polish by elissa
#Updated translation: Polish (Informal) by elissa
#Updated translation: German by actxcellence, assistedmindfulness, c_schmitz, eddylackmann, Joffm, Liam, mfaber
#Updated translation: French (France) by AnneSophieB, DenisChenu, fgervais, mapage, riqcles
#Updated translation: Finnish by Jmantysalo
#Updated translation: Dutch by c_schmitz, Han, kpadm, L191, mdekker, MrP
#Updated translation: Dutch by Han, zfocuz
#Updated translation: Dutch (Informal) by atvoogt, c_schmitz, Han
#Updated translation: Dutch (Informal) by Aanouk, c_schmitz, Han, zfocuz
#Updated translation: Croatian by rovinj
#Updated translation: Catalan by qualitatuvic
Changes from 6.17.4 (build 260520) to 6.17.5 (build 260527) May 26, 2026
-Fixed issue #AT-2056: Increase pagination to 250 and 500 (#5001) (Patricia Stell)
-Fixed issue #AT-1897: design fixes for CSS states (#4992) (Tim Willig)
-Fixed issue #20527: Bad order of default response list for multiple text question (Carsten Schmitz)
-Fixed issue #20524: [security] Unsanitized null condition key (thank you for reporting Nagarajan Selvaraj Paulmony)(#4988) (Stefan K)
-Fixed issue #20507: Unclosed twig comments in vanilla/fruity_twentythree themes (Mathieu Bruyen)
-Fixed issue #19824: Page size of central participant list was limited to 100 (Carsten Schmitz)
-Fixed issue #19571: Text fixes for templates -> themes (Carsten Schmitz)
-Fixed issue #15946: File upload question: cannot select csv file (Carsten Schmitz)
#Updated translation: Portuguese (Portugal) by ricardo.santos
#Updated translation: Japanese by d_inoue, nomoto
#Updated translation: German by c_schmitz
#Updated translation: French (France) by DenisChenu var/softaculous/dotcl/changelog.txt 0000644 00000105364 15234431170 0013511 0 ustar 00 Dotclear 2.38 - 2026-05-13
===========================================================
* 🐘 PHP 8.2+ is required, PHP 8.3, 8.4 and 8.5 compliance
* Breaking change: Dotty archive template will now display all blognav widgets rather than only search
* Breaking change: Method addBehavior() $func argument must be callable type
* Breaking change: Backend actions addAction method no longer accept Option nor formSelectOption as item
* Breaking change: name attribute cannot be used on every html element (JS/CSS may be need some review in 3rd party modules)
* Breaking change: App::blog()->updPostStatus() and App::blog()->updPostsStatus() requires integer status as 2nd argument
* Theme: Remove blowup and blueSilence themes from distribution (still downloadable from Dotclear server)
* Theme: Remove ductile from distribution (still downloadable from Dotclear server) and add Ductile2026
* Theme: Berlin stylesheet has been reviewed
* Core: Add an option for pages, categories and tags widget to prevent display on archive main page
* Core: Consider only those themes present in the themes folder of the current installation as distributed themes
* Core: Switch from jQuery to Vanilla JS (almost) for theme editor
* Core: Add webp and avif format to auto image mechanism in dotclear wiki
* Core: Review admin favicons (login/logout), rename PNG, add SVG and remove ICO oldies
* Core: Add Continue reading link after trackback content in template set (dotty/mustek)
* Core: Encapsulate pagination separators with span (classes .pagination-separator-before and .pagination-separator-after), (dotty, mustek)
* Core: Add a class="poweredby" to p in footer (mustek, dotty, Ductile2026)
* Core: Use list rather than p for list of feeds (category, tag) - (mustek, dotty, Ductile2026)
* Core: Review default CSS rulesets for media alignments (public.css)
* Core: Add a span class bc-separator around default breadcrumb separator
* Core: Simple menu, add a disabled option for simple menu items
* Core: Add title before comment form message, some themes may need to be adapted
* Core: Add 2 behaviors when a theme is selected, themeBeforeSelect and themeAfterSelect
* Core: Main help index reviewed
* Core: Set " - " in a span class="navlinks-separator" for posts navigation (dotty/post.html)
* Core: Dotty/Mustek reviewed (classes and roles)
* Core: Add "search" class to search widget and "topnav" class to navigation widget
* Core: Add "breadcrumb" class to breadcrumb container
* Core: Add "simple-menu-navigation" class to simple menu container (nav)
* Core: Breadcrumb, do not show 1st page (for all contexts), add an option to modify Home link label (in blog parameters)
* Core: Make small SVG image visible in public.css, themes should overload this
* Core: Add a setting for customCSS to select the template set to use with (mustek/dotty)
* Core: Use strip_tags rather than remove_html for cutting start of content as strip_tags preserve texts from tags (as for links)
* Core: Add a class="footnote-ref" to footnote link (a inside sup)
* Core: Add feeds class on feed list containers (widget, template, …)
* Core: Add an additional tpl:EntryIf attribute to check if there is one or more tags associated with the entry, Tags plugin
* Core: Add a private method to sanitize antispam filters settings, Antispam plugin
* Core: Add user_style.css, user_print.css and links in user_head.html in berlin and Ductile2026
* Core: Add not on main archive page for some more widgets (search, navigation links, best of, languages, subscribe, …)
* Core: Add tpl:IfEntryFirstImage template block (check if a tpl:EntryFirstImage will provide something)
* Core: Rewrite Files::deltree() method using RecursiveDirectoryIterator() rather than DirectoryIterator()
* Core: Add a tpl:LoopCount template value
* Core: Put standard CSS (public, print and smilies) rulesets inside a @layer dotclear
* Core: Add a cardinal() method to MetaRecord, get (int) value (from the 1st row) from a SQL select using a count(), max(), … at 1st column
* Core: Add a Fault::unsetExceptionHandler() to be used with PHPUnit tests (see bootstrap)
* UX/UI: Codemirror theme selector, separate light and dark themes
* UX/UI: Cope with perceptual brightness of background color to split dark and light Codemirror themes
* UX/UI: Add a supplemental button to hide/show menu (this button may be hidden via user prefs)
* UX/UI: Add a note about textarea settings in widgets as their content can be enhanced wit HTML syntax
* UX/UI: Blog selector in header: sort by blog status (descending: online, offline, removed, …) and then by blog name
* UX/UI: Theme editor using Codemirror: template blocks/vars are now displayed with their own colors (attributes remains uncolored)
* UX/UI: Review theme editor code font size (slightly smaller)
* UX/UI: Add vertical resize capabilities to textarea/Codemirror in theme editor, and smaller font for line numbers (Codemirror only)
* UX/UI: Add offline and sts- classes to each blog line (list of blogs)
* UX/UI: Add offline and sts- classes to each user line (list of users)
* UX/UI: Allow using theme.jpg if no screenshot.jpg exists to display theme's screenshots
* UX/UI: Replace H1 Dotclear logo (in all non-popup pages) by an update link if Dotclear update is available
* UX/UI: Use softer border for dashboard icons (only if more contrast is not set)
* UX/UI: Review borders: breadcrumb, boxes and quick entry on dashboard (only if more contrast is not set)
* UX/UI: Review icons' background color (dark mode, only if more contrast is not set)
* UX/UI: Remove borders of badges (only if more contrast is not set)
* UX/UI: Adjust contrast of outgoing link icon
* UX/UI: Visually center user preferences icon
* UX/UI: Add some colors to plugins description summary markers
* UX/UI: Add post date as href title on comments listing
* L10n: Template becomes gabarit in French
* Fix: Ensure fake email field is hidden on comment form (useful if CSP prevents inline styles)
* Fix: Do not allow deletion of distributed themes (in original DC themes folder) on update tab
* Fix: Use protected module list rather than distributed one in Cleaner plugins/themes
* Fix: Theme editor: Remove cm_dirty class from textarea (not removed by Codemirror during Ajax saving)
* Fix: Do not use date (usually date of media upload) in media legend, only description
* Fix: Set inert attribute to Codemirror sample (avoid tab stop in it)
* Fix: Unknown modules (plugins) are now disabled if possible
* Fix: Use default date/time format if none defined (maintenance plugin)
* Fix: Exclude all possible thumbnails rather than only jpg when zipping theme
* Fix: Back to media root directory if the chosen directory (fav/direct) does not exist
* Fix: Berlin theme, no need to load berlin.js in footer, load it in head
* Fix: Berlin theme, add an upper margin before a figure following another figure which have a figcaption
* Fix: Harmonize breadcrumb of theme customization page and add a return button in all cases (standalone config, doc only, …)
* Fix: Audio/video media insertion when position (left, right, center) is chosen
* Fix: Show page number in breadcrumb only if relevant
* Fix: Exclude .git/.DS_Store from theme archive (maintenance plugin)
* Fix: Remove outnumbered for in dotty category.html template
* Fix: Template engine, fix compilation of files if use_cache is false
* Fix: tpl:EntryIf using type and anything different than 'post', also add a ! prefix to test on everything but given type.
* Fix: Give back focus to editor textarea after saving in Theme Editor
* Fix: Form Component generic class attribute, use only unique values is class list
* Fix: Use search element (without using role="search" on form) if container is used in widget element
* Fix: Berlin theme, Cut long trackback URL in order to avoid overflow
* Fix: Category feed URL should be available even if no posts in it
* Fix: Fixes the reading of item categories from basic RSS feed
* Fix: Template engine: don't cope with compile stack on including file, includes them whatever they have been yet compiled or not
* Fix: Do not lock/unlock tables if a transaction is in progress
* Fix: Comments listing used wrong status methods to get status icon and status class
* Fix: Cope with unknown URL with static home page
* Fix: Loading of custom locales of theme
* Fix: Check stream context before using it
* 🐛 → Various bugs, a11y concerns and typos fixed
* 🌼 → Some locales and cosmetic adjustments
Dotclear 2.37 - 2026-02-13
===========================================================
* 🐘 PHP 8.2+ is required, PHP 8.3, 8.4 and 8.5 compliance
* Breaking change: PHP 8.1 is no longer supported
* Breaking change: Adjust return type of isSpam method of antispam filter (filter now must return null or true or false)
* Breaking change: type property is now mandatory in _define.php of modules (plugins, themes)
* Breaking change: Switch from DotAddict to Dotclear for plugins/themes repositories
* Breaking change: Use only one category (Actualités) for Dotclear news feed
* Breaking change: Upgrade jQuery from 3.7.1 to 4.0.0 and jQuery migrate from 3.5.0 to 4.0.1
* UX/UI: Media sub-folders are now sorted in lexical order (based on their names)
* UX/UI: Add a user preference option to use dynamic letter spacing rather than normal
* UX/UI: Add a visual indicator (header border color and collapser background color) when one of monitored forms is unsaved, checked every 5s
* UX/UI: Review color input appearance
* UX/UI: Review CSS breakpoints (now 600, 1024 and 1280px)
* UX/UI: Sortable items: reduce sortable handler area to button only (was entire row before) and give more room for the handler
* UX/UI: Add two user preferences to use a dense layout for favorites icons, and for dashboard modules boxes
* UX/UI: Adjust badge horizontal position on icons with dense layout
* UX/UI: Add an header label for Antispam filter's settings link in list
* UX/UI: about:config and user:prefs plugins: give focus to 1st focusable element on menu selection
* UX/UI: Switch order of two options of Antispam plugin in blog parameters page, add some explanation about the "only moderate spam" option
* UX/UI: Cope with last opened folder in media manager
* UX/UI: Cope with last media directory opened from user (stored in user prefs)
* UX/UI: Use specific labels for user statuses (in order to avoid confusion with other usages of these labels)
* UX/UI: Add some statistics on users list and blog list
* UX/UI: Add date and modification date (and time) columns for users list
* UX/UI: Widgets management, CSS review
* A11y: Use aria-current rather than aria-selected for current tab
* A11y: Enforce some contrasts in dark mode (AA minimum)
* Core: Add an option for each category to disabled feedback (enabled by default)
* Core: Simple Menu, a data (string) may be add to each item and it's value will be rendered as data-menuitem HTML attribute
* Core: Add a max_level parameter (0 = all, n = number of levels) for categories retrieval in blog->getCategories() and categories->getChildren()
* Core: Blog settings and User preferences, if unknown type, try to detect type from given value and use it if possible
* Core: Add a dotclear helper (JS) to give focus to the 1st focusable child in an element (take care of tab order)
* Theme: Berlin, cope with motion reduce setting (a11y)
* Fix: Blank target of Simple Menu item was not correctly preserved when changing order of menu items
* Fix: Checking $_POST[…] for a checkbox which may be not present is $_POST if not checked
* Fix: Some cleanup was missing in last 2.36 update
* Fix: Cope with GD not available for OTP QR Code in user pref
* Fix: Media item deletion with a search filter
* Fix: Ensure given value of Html/Form/Strong field is string
* Fix: Antispam filters order management if drag'n'drop is disabled in user prefs
* Fix: Menu was hidden in some cases
* Fix: Use key attribute of keydown event rather than code in order to ignore keyboard layout (standard Editor)
* Fix: Success message on user deactivation
* Fix: cope with encapsulated tags (code in pre for example) for smilies replacements
* Fix: Blogroll, use "Category status" rather than "Link status" for categories
* Fix: Search module (plugins/themes) with 0 results
* Fix: Cope with Codemirror editor for dirty forms monitoring
* Fix: Return URL from secondary page of actions (entries, …), was limited to last 10 selected in 1st page
* Fix: Usage of CKEditor and classic editor for non admin users
* Fix: Avoid overflow of figcaption for centered figures
* Fix: Theme editor, give priority to named template set rather than generic one when searching template files
Dotclear 2.36 - 2025-11-13
===========================================================
* 🐘 PHP 8.1+ is required, PHP 8.2, 8.3 and 8.4 compliance
* Breaking change: Media::getFSDir() has been removed
* Breaking change: Add a MediaFile file descriptor (extends File class)
* Breaking change: File class no longer allow dynamic properties
* Breaking change: ThemeConfig::cleanCSS method has been removed
* Breaking change: dcCore instance parameter is no longer provided by Rest server
* Breaking change: dcCore::app()->spamfilters is no longer taken into account
* Breaking change: The deprecated Error::toHTML() method has been removed
* Core: Unlock theme modification even for old ones (overload attribute in _define.php of themes is no longer used)
* Core: Add Webauthn (Passkeys), OTP and oAuth2 support (to be configured in inc/oauth2.php, an example is provided in inc/oauth2.php.in), a new table credential will be added to the DB
* Core: Frontend session is now supported
* Core: Add a dotclear_exit() proxy function (loaded by App) for exit()/die()
* Core: Add PDO drivers for mysql and pgsql and rename sqlite
* Core: Allow load and forget a service, useful for example to open a secondary connection of a DB
* Core: Add DB method to get a connection on the fly
* Core: Set session TTL to 20 hours rather than 2, it's better for accessibility
* Core: Allow opening a Frontend context during Backend one, using the same session
* Core: Sanitize sqlStatement given conditions (or, and, groups)
* Core: Add a boolean 3rd parameter to Listing::userColumns() to transform if necessary, all columns' value to Component if already not (as Text)
* Core: Let's be gentle with old installations, but not too old, so welcome back the deprecated bootstrap() method to App ;-)
* Core: Add CLI mode for installation
* Core: Add adminPageHTMLBody behavior (called just before closing body)
* Core: Move hard coded store URLs to release file
* Core: Bump minimum required PHP version to 8.2 for future releases (after 2.36)
* Core: Add a maintenance task to empty feeds cache folder
* UX/UI: For entries with closed comments or closed trackbacks, display comments/trackbacks counters with a specific color (aria-details added if necessary).
* Core: Add download attribute to Html/Form/Link (a)
* UX/UI: Add comments/trackbacks status information for post and page
* UX/UI: Review entry link toolbar icon (standard Editor and CKEditor)
* UX/UI: Plugin with setting link(s): remove hr and add a vertical separation (blank)
* UX/UI: Enforce visibility of informative/warning message from media listing (no results from filter, empty folder)
* UX/UI: Add unique id (if not given) of all toolbar's element
* UX/UI: Add group management for standard Editor toolbar elements (spacers are no longer needed)
* UX/UI: Entry edition page: Ask to reset the url base if title has changed and if entry is not published (only if title is used in entry URL format)
* UX/UI: Add some padding to textarea (2px is not enough, the cursor was difficult to see at the beginning of a line)
* UX/UI: Theme preview have been removed
* UX/UI: User preferences: show a warning message if QR code image cannot be provided
* UX/UI: Allow using theme editor as a favorite, use a better name
* UX/UI: Differentiates list of options (used in HTML) and list of values for select filters, group months by year for posts filter
* UX/UI: Groups months by year for menu simple archive item
* UX/UI: Replace grid.png by grid.svg (was the last PNG image in admin)
* Theme: Berlin, use CSS grid for widgets layout (with 2 or 3 columns)
* Theme: Review management of widget title/subtitle formats
* Fix: Link color in warning message on dark scheme
* Fix: Fix link color in warning message on dark scheme
* Fix: Page plugin, use the correct editor for HTML after conversion
* Fix: Cope with search filter when deleting item in media insertion popup
* Fix: CKEditor: allow insertion of link (direct/entry) on empty selection
* Fix: All editors: Use entry title as link text if current selection is empty
* Fix: Ensure storing integer value in post_limit, post_offset and post_count properties when importing from Wordpress
* Fix: Fix progress bar progression in import/export plugin, and autosubmit JS script
* Fix: Allow entry preview for non admin users
* Fix: Flat export without check zip format
* Fix: Do not insert custom CSS stylesheet if the current theme is not customCSS (frontend)
* Fix: Thumbnails deletion on search media delete action
* Fix: Isolate upgrade dependencies classes (Menu and Helper)
* Fix: CSS variable name for #help-button color
* Fix: Ensure that some transient user preferences (media_manager_dir, media_file_mode) are not already stored in DB before adding them
* Fix: Media manager, back to first page when changing directory (fav, last or sub-directory)
* Fix: Cope with media item deletion from search results
* Fix: Take care of empty value for given REST function
* Fix: Use process way for admin URLs set by JS (and ensure popup=1 is set when opening a popup)
* Fix: Avoid removing media from post if no IDs given
* Dev: Switch from Atoum to PHPUnit for unit tests
* Dev: Add a development mode to theme editor (if set then the editor will behave as before overloading system, directly editing themes files). This mode may be set via a themeEditorDevMode behavior callback
* Dev: Temporary removal of links to the documentation (until the new server is operational) in CONTRIBUTING.md
* Locales: Norwegian (bokmål), Thai and Vietnamese languages added
* Locales: Bengali, Catalan, Esperanto, Spanish (Argentina),Basque,Hindi,Croatian,Occitan,Serbian,Telugu removed
Dotclear 2.35 - 2025-08-13
===========================================================
* 🐘 PHP 8.1+ is required, PHP 8.2, 8.3 and 8.4 compliance
* Breaking change: App::auth()->blog_count is no longer public, use App::auth()->getBlogCount() instead
* Breaking change: App::frontend()->smilies is an array (may not be initialized) and no longer accept false value
* Breaking change: restCheckStoreUpdateV2 behavior use now an single associative ArrayObject rather than two arrays
* Breaking change: Put the global __() function in a separate file, L10n::bootstrap() should be call in order to have this function defined
* Breaking change: HtmlFilter now trim returning string
* Breaking change: User favorites, remove unused case (using array) in getFavorite($id) method
* Core: Propose to reset entry URL when publication date is changed (if not already published)
* Core: Allow using patterns for house cleaning during upgrade
* Core: Add an option to Antispam to publish immediately moderated comments/trackbacks if they are recognized as not being a spam
* Core: Reset host cache list if force refresh is required (upgrade dashboard)
* Core: Add a host cache in StoreReader (with log)
* Core: Remove old IE code from standard Editor Wysiwyg mode
* Core: Add a JS helper, dotclear.DOMready to use when DOM content is loaded (backend/frontend)
* Core: Add also media_private to idx_media_media_path SQL index as this field is often used in queries with media_path and media_dir
* Core: Make idx_media_media_path SQL index generic, not only for PostgreSQL
* Core: Adds a meta tag that can be disabled to prevent indexing by AI engines in Blog parameters (advanced section)
* Core: Add two behaviors in themeEditor themeEditorWriteFile, themeEditorDeleteFile to let 3rd party plugins play with it
* Core: Cope with mjs (javascript module) in themeEditor
* Core: Remove link to current selected theme stylesheet which is not useful on themes' list page
* Core: Display a warning message if theme is too old to be overloaded with themeEditor
* Core: Add a specific define value for theme supporting overloading (DC 2.35+)
* Core: Allow modification of distributed themes as the new system will not modify original files
* Core: Cope with index.php?tf=resource.ext and with custom theme template path (var)
* Core: Add a behavior (adminDashboardMessage) to provide 3rd party modules message on dashboard
* Core: Add a behavior (adminConvertBeforePostEdit) to allow 3rd party conversion before editing entry content (post/page)
* Core: Set default antispam moderation TTL to 7 days rather than 0 (immediate)
* Core: Rewriting the method for building category lists without using recursion
* Core: Call coreContentFilter behavior for preview button (wiki mode)
* Core: Add a status information for blogroll links and categories
* Core: Cope with full URL for public media when looking for 1st image in entry
* Core: Use XML format rather than serialized PHP Object to cache feeds
* Core: Use IntersectionObserver rather than an EventListener for Goto Top button (show/hide) and Help button (position and aspect)
* Core: Optimize getLangsCombo method
* UX/UI: Review prefix of back button text (::before)
* UX/UI: Review editors' name, use description rather than name in user pref if available
* UX/UI: Use an animated SVG rather than GIF for autocomplete loading indicator
* UX/UI: Review responsive table header management on small devices (WIP)
* UX/UI: Use a dialog for inline quote insertion in legacyEditor rather than two consecutive prompts
* UX/UI: Add aria-label to set to today button
* UX/UI: Add aria-label to show/hide password button
* UX/UI: Add an Ok button to notices in order to close them
* UX/UI: Review maintenance tasks messages using Ajax
* UX/UI: Slight review of toolbar buttons background on standard Editor
* UX/UI: Review theme editor help
* UX/UI: Add a global help sidebar only if has not already been loaded
* UX/UI: Add a last donation date personal reminder in donation fieldset on dashboard
* UX/UI: Add some note about video insertion sizes
* UX/UI: Slight review CSS of responsive tables
* UX/UI: Add a plugins settings page with all available links to different kinds of plugins settings
* UX/UI: Review Theme Editor plugin icon (light/dark)
* UX/UI: Review look and position of title on auth page
* UX/UI: Force sub-categories to be displayed under the category
* UX/UI: After update done, go directly to authentication (Upgrade) instead of requiring a another click from user
* UX/UI: If secondary notes should be hidden (in user pref), also hide informative notes
* UX/UI: Switch to light-dark() and cope with color scheme for backend CSS
* Fix: No need for spl_autoload_register callback to return anything
* Fix: Do not use french feed for Finnish language
* Fix: Do not request multiple times the list of fonts during blowup config rendering
* Fix: Fix form children selector in dotclear.enterKeyInForm() helper
* Fix: Fix CSS for outgoing-link image
* Fix: Set media link (not image nor video nor audio) content to current selected text (or url if none) in standard Editor
* Fix: Set media link (not image nor video nor audio) content to current selected text (or url if none) in CKEditor
* Fix: Avoid loading more than once util.js (Frontend)
* Fix: Fix fields' color (to cope with light/dark mode) for Blue Silence theme
* Fix: Fix fields' color (to cope with light/dark mode) for Blowup theme
* Fix: Do not list minified versions of files in themeEditor
* Fix: No need to change field backgrounds in order to cope with light/dark modes in Ductile
* Fix: Prevent unsaved media properties if necessary
* Fix: Berlin theme: style only aside without any classes
* Fix: Try to cope with non UTF-8 encoded theme's files in themeEditor if necessary
* Fix: Review composition of list of plugins in notice/success/warning/error
* Fix: Display delete button as soon as file saved (even with JS) in themeEditor
* Fix: Review dynamic activation/deactivation of delays in maintenance settings tab
* Fix: Maintenance plugin: display expired task(s) message only if requested in plugin settings
* Fix: Select the correct radio button for maintenance alert depending on current settings
* Fix: Quick entry creation without category
* Fix: No need to load more than once legacyEditor resources (JS, CSS, …)
* Fix: Fix miniTidy by reverting HTML5 closing single tags to XHTML form as xml_parser will use XHTML format.
* Fix: Cope with footnotes CKEditor plugin which force background color
* Fix: Do not display generic help on plugin config if help is already set
* Fix: Filter contextual help content to avoid malformed HTML
* Fix: default smilies definition path
* Fix: Put ul of sub-categories inside the li, not after
* Fix: Fix: Its better to have a form to save stuff in maintenance!
* Fix: Target = _blank is for opening in another tab/window
* Fix: Fix comment preview content, the publicBeforeCommentPreview behavior effect was ignored
* Fix: Fix helper message for comments and trackbacks TTL
* Fix: Use new-stuff class rather than top-add as this one might be hidden by ads-blockers
* Fix: Keep some space between username and logout icon
* 🐛 → Various bugs, a11y concerns and typos fixed
* 🌼 → Some locales and cosmetic adjustments
Dotclear 2.34 - 2025-05-13
===========================================================
* 🐘 PHP 8.1+ is required, PHP 8.2, 8.3 and 8.4 compliance
* Breaking change: No longer argument dcCore::app() given in SpamFilter::__construct()
* Breaking change: Use standard pagination template on search result pages in dotty template set
* Breaking change: use input type search for search widget, may have impact on theme's CSS
* Core: Add a flag — SOCKET_VERIFY_PEER, to be defined to false in inc/config.php — to ignore peer verification (host and certificate) on socket connection (use with caution)
* Core: Add an optional parameter for postType to specify the admin URL of list of it's entries
* Core: Plugins adding buttons on legacyEditor/CKEditor should have at least 1010 priority, 1005 is reserved for additional syntaxes to legacyEditor (as legacyMarkdown)
* Core: Move default location of upgrade backups from root to var folder, also move old backup files in this new location if they still are in root folder
* Core: Add two helper methods to Tpl class, getCurrentTag() and getFiltersParams(), useful to when using Ctx::global_filters()
* Core: Core version code review
* Core: Complete actions behaviors (new behaviour adminAfterProcessAction)
* Core: Add a new behavior 'coreContentFilter' to replace too restrictive old 'coreAfterPostContentFormat' (used in post content/excerpt, comment content, category description)
* Core: Add a template value tpl:CommentIfUs similar to tpl:CommentIfMe but for all blog's active users (use with caution, especially on large number of users)
* Core: Use DirectoryIterator rather than opendir/readdir/closedir
* Core: Add a Dotclear constant to limit DB update with new media (default = 1000). May be set in inc/config.php (DC_MEDIA_UPDATE_DB_LIMIT)
* Core: Check limit before doing something to allow setting DC_MEDIA_UPDATE_DB_LIMIT to 0 to never add missing media in DB
* Core: Cope with unattended request on CSP report URL
* Core: Add a force rebuild thumbnails in current directory. To be use with caution with large number of media in it as it is not asynchronous yet.
* Core: Allow reusable core script (JS) for entry selection
* Core: Add Span and Strong as child of Html/Form/Text class, add items/separator/format management to Text
* UX/UI: Add template set information in theme details
* UX/UI: Review left header positioning in tables on small devices
* UX/UI: No longer use ▶ as main menu active item indicator (confusing with fold-able stuff), back to : character
* UX/UI: Differenciate dotty/mustek template-set based themes in blog appearance page
* UX/UI: Display entry types in list (search, tags)
* UX/UI: Add generic translate attribute management and use it to avoid browser translation of some languages information (list, codes, …)
* UX/UI: Remove light gray background on editor's toolbar. Add a visible separator between groups of tools on legacyEditor toolbar.
* UX/UI: Adjust color/background for disabled textarea
* UX/UI: Use type search for back-end search inputs
* UX/UI: Precise which password is required (admin one) on user page validation
* UX/UI: Add translate="no" to several fields (id, names, urls, emails, langs, …)
* UX/UI: Stick main menu to the top
* UX/UI: Add a scroll-behavior: smooth for body
* UX/UI: Add a user option to sitck main menu on top othe page as far as possible
* UX/UI: Cope with enter key to validate sidebar widgets settings form
* Fix: Review management of favorites icon's legends
* Fix: In Blog::getLangs() set a table alias P for post table in SQL statement as it may be used in some cases
* Fix: Fix breadcrumb for comment
* Fix: Rollback jQuery UI from 1.14.2 to 1.12.1 as 1.13.* and 1.14.* cause problems with nested drag'n'drop jQuery plugin (categories)
* Fix: legacyEditor: Don't put a space at the beginning of the toolbar, don't repeat spaces
* Fix: legacyEditor: Do not display spacers if they are in first or last position in toolbar
* Fix: Missing tab id for system settings of maintenance plugin
* Fix: Display of founded trackbacks links and proposed trackback excerpt (on auto discover action)
* Fix: Default color palette for CKEditor
* Fix: Switch back some password fields to input fields as browsers try to do more than required (especially on Windows), even if autocomplete="…" is not defined!
* Fix: Optional disabled modules management
* Fix: Labels for next/previous post buttons
* Fix: Avoid ambiguity in statistics displayed above list of entries. The links to various entry status list are displayed only if only one post type in list.
* Fix: Use fully qualified class for MailSocket() method in config.php.in template
* Fix: URL regexp for lang scheme
* Fix: Labels for items pagination (aka no of item per page in admin lists)
* Fix: Don't sort twice files in media directory
* Fix: Tags user option display
* Fix: Cope with {{tpl:lang…}} or {tpl:lang…} or already compiled = __(…) ?> or in widget settings
* Fix: Avoid sorting dirs/files if not necessary
* Fix: Media settings URL (in blog parameters) in footer on media page
* Fix: Don't escape twice link properties
* Fix: Disabled module update
* Fix: Module install
* Fix: Do not use autocomplete for login in new user page
* Fix: Use positioning in sprintf formats as some languages may use another order in sentences than English.
* Fix: Return button (label and URL) on user permission page (user action)
* Fix: Do not remove path part of themes_url when composing resource's URL, only if themes_url begins with http(s)://
* Fix: Do plugins installation (Install.php / _install.php) if necessary (on upload, download, install and update) on upgrade dashboard
* Fix: Empty/Delete uninstall Cleaner use a non prefixed table name as input.
* Fix: CKEditor loading of media CSS alignment
* Tests: Remove unnecessary sleep() in Files unit tests
* 🐛 → Various bugs, a11y concerns and typos fixed
* 🌼 → Some locales and cosmetic adjustments
Dotclear 2.33.1 - 2025-03-02
===========================================================
Fix: Remove improper before end of paragraph (
) in legacyEditor if any
Fix: Link color in table item headers on small devices
Fix: Non admin users cannot create a new post
Dotclear 2.33 - 2025-02-13
===========================================================
* 🐘 PHP 8.1+ is required, PHP 8.2, 8.3 and 8.4 compliance
* Core: Get title and description from SVG if exist
* Core: Add optional release date to modules and display them if present
* Core: Status management revamped (entries, comments, users, blogs, ...)
* Core: New behavior coreBlogBeforeGetPostsAddingParameters (used for some db requests)
* UX/UI: Add left/right arrow key navigation from post to post (or page to page)
* UX/UI: Adjust (small) image size in some popup display
* UX/UI: Add media title to metadata list
* UX/UI: Add direct submit on quick menu selection (search field)
* UX/UI: Add a required attribute to password of the chosen action is delete on blogs page management
* UX/UI: Add count of available updates for plugins and themes in tab title
* UX/UI: Review "Lock theme update" note, thanks Gérard Barré for this suggestion
* UX/UI: Adjust size and positions of sub/sup texts
* UX/UI: Add media title as ordering criteria
* UX/UI: Apply a lexical sort for names and titles of media
* UX/UI: During meta (tags) search, add a second loop looking after the beginning (those results will be displayed at the end of the list)
* UX/UI: Remove stats (no of entries, usage frequency) on autocomplete list (tags)
* UX/UI: Classic editor: Set some CSS attributes to avoid dynamic inline style insertion during copy'n'paste
* UX/UI: Switch from : to ▶ character for current/active menu-item indicator (with a fallback to :)
* UX/UI: Remove metadata frequency information (not useful in backend)
* UX/UI: Cope with large SVG icon in sidebar of entry edition page
* UX/UI: Media item page: on display list of entries using the media, display now two lists (inside entry/entry attachments).
* UX/UI: Cope with alternate text and description of video and audio media during insertion
* Fix: Lock/unlock button (on input/textarea) was not accessible
* Fix: Don't display a warning about missing permission for super-admin newly created users
* Fix: SQL error on changing existing user id, the prefs were created from the old id, not the new one
* Fix: On some servers, OPCache API might be restricted. Try to detect this.
* Fix: Don't display twice the media title in media metadata list
* Fix: In en empty media folder, uploaded files using the enhanced uploader were not displayed
* Fix: Ensure there is at least one available language to download before showing the according form
* Fix: XMP metadata were badly read from image file
* Fix: Cope with non existing settings in Ductile configuration
* Fix: Boxes alignment on blog appearance page
* Fix: Date format label in blog parameters
* Fix: Sortable blocks system on dashboard
* 🛡 Security: Fix potential XSS, thanks Ratnesh Kumar for reporting this issue
* 🛡 Security: Escape HTML content in filters' input fields
* 🛡 Security: Disallow double (or more) extensions on media upload file, fix a potential RCE reported by Ratnesh Kumar.
* 🐛 → Various bugs, a11y concerns and typos fixed
* 🌼 → Some locales and cosmetic adjustments
Dotclear 2.32.1 - 2024-11-27
===========================================================
* Fix: A category could not be renamed
* Fix: The categories page doesn't display any categories if there's only one for the blog
* Fix: Cast number values to int in blog parameters form as they might be non-existent
* Fix: Replace return button by a cancel button in intermediary steps during creation of a new SimpleMenu item
* Fix: legacyEditor with pseudo empty excerpt (thanks Ben Griffith for documenting this issue) var/softaculous/x2/changelog.txt 0000755 00000004335 15234452071 0012737 0 ustar 00 # 7.1 #
1/3/2019
* General Changelog / Developer Notes
* X2CRM is now compatible with PHP 7.1+
* Miscellaneous bug fixes
* Fixed issue with emailing where mail servers which are not configured to use VERP can still send email
* Removed list option from the reporting module
* A/B campaigns now work with dynamic lists
* Fixed issue where 'do not email' settings would get incorrectly set
* Fixed issue where a 500 error would occur if the 'maxFileSize' attribute was not created correctly
* Fixed issue where X2Flow would incorrectly reference a workflow ID
* Fixed issue where logging time on a record would incorrectly calculate time spent
* Fixed front-end with the complete stage action in X2Workflow where the note textarea was covering the stage selection dropdown
# 7.0 #
10/19/2018
* General Changelog / Developer Notes
* Accounts, Leads and Opportunities are now listable
* Contacts can now be converted to leads
* Campaigns
* A/B testing for campaigns added
* Account, Lead and Opportunity lists can now all be used in campaigns
* Miscellaneous bug fixes
# 6.9.3 #
1/3/2018
* Fixed unrecognized field lastModifies bug
# 6.9.2 #
12/29/2017
* Fixed email bug
# 6.9.1 #
11/20/2017
* General Changelog / Developer Notes
* New Enterprise UI
* New Paper-White UI default theme
* Revamped Landing Page Designer
* Top Menu Dropdowns
* New X2HubServices integrations
* Contact Twitter feed
* LinkedIn user information autofill
* Dropbox integration
* Docusign Integration
* Miscellaneous bug fixes
* Workflow tag bug fix
* Calendar empty tables bug fix
# 6.9 #
08/22/2017
* General Changelog / Developer Notes
* Miscellaneous UI enhancements
* Green login logo
* Miscellaneous bug fixes
* Login token bug fix
* UI bug fixes
# 6.9 #
7/29/2017
* General Changelog / Developer Notes
* New edition: Enterprise
* UI changes (e.g., top menu bar, icons, Default theme)
* Updated X2Workflow UI
* New Landing Page Creator
* Dynamic Activity Feed Map
* New Mobile Nearby Contact Map
* Code Editor (Enterprise Edition)
* Users can now edit application code using the
built-in code editor
* Comes with php linter, day/night themes and VIM bindings
var/softaculous/wonder/changelog.txt 0000644 00000014507 15234546127 0013711 0 ustar 00 WonderCMS 3.6.0 Latest
Features and fixes
Security + stability update to WonderCMS core (index.php) with no intended breaking changes. It hardens module installs/updates, fixes a few long-standing bugs, improves PHP 8.4+ compatibility, and adds an ultra-simple plugin enable/disable mechanism (no file deletion needed) with conflict-prevention for editor/translation plugins.
Changes
Safer theme/plugin installs & updates
Stronger sanitization for module name/type
Basic ZIP entry validation to prevent zip-slip (bad ZIPs writing outside the module folder)
Login hooks now work
Plugins load before loginAction() so login_success / login_failed listeners can run reliably
Search fixes
Fixed broken internal search helper methods
Improved Simple Blog post search compatibility
More accurate update checks
Replaced string compares with version_compare() for modules + core update checks
PHP compatibility / deprecation cleanup
Explicit nullable params for PHP 8.4+
Fixed str_ireplace(..., null, ...) deprecation triggered during plugin deletion on newer PHP
Plugin enable/disable (new)
New config.disabledPlugins list in the DB
loadPlugins() skips disabled plugins but still lists them as installed
Settings → Plugins now shows Enable/Disable for installed plugins
Editor/translation conflict prevention: enabling/installing one editor/translation plugin auto-disables other enabled plugins from the same group (with confirmation prompt)
Backwards compatibility
No plugin API changes (existing plugins do not need changes).
config.disabledPlugins is optional; if missing, behavior is unchanged.
Note: if a user disables plugins on this version and later downgrades to an older WonderCMS, the older core will ignore disabledPlugins and those plugins will load again (expected).
Version 3.5.0 released
March 16th, 2025
Hello WonderCMS-ers 🩵
This update has been long in the making. It includes a lot of the community wanted features such as Search
We have also created fresh and searchable documentation
If you can - support our free and open source mission.
Click here to donate or check our awesome merch
As a WonderCMS user, you get a 15% discount code WONDER15 in our shop
If you haven't yet, give us a star ⭐ on Github
Features & bug fixes
Search - add a simple search tag in your theme and your website becomes searchable - more details
Blog plugin updates
You can now set blog as the default page - more details
Blog bug fix: users could overwrite their previous post if the article had the same name. It now creates a separate page
Contact form plugin update - more details (view read me file)
❗ If you are updating the contact form plugin, it will reset your config, meaning you have to re-enter your email in Settings - Security
Contact form bug fix: users could overwrite their previous post if the article had the same name. It now creates a separate page
The contact form plugin now also supports Google reCaptcha v2, the keys can be also set in Settings - Security
Modal - settings popup can now re-open to last tab where you made changes (turn on in Settings - Security - more details
Pages - all pages now have the "created" and "modified" time saved in database - more details
Head header tag - you can now add a new tag to your theme and avoid creating your own block - more details
New hook on renderPageNavMenuItem is now a hook and you can now overwrite the menu in your template - more details
New hook: loginAction is now a hook and can be now used to modify the login to ban IP's or implement 2FA solutions - more details
Fix bug when creating new page (error log displayed error - resolved)
Summernote now has a dropdown with your uploaded files - easier to insert into your pages - more details
Special thanks to our community for the improvement suggestions
1 click update
IMPORTANT: First backup and update your WonderCMS, then update your themes and plugins.
Login to your WonderCMS website and click "Update". Create a backup prior to updating.
If you can't see the update, open Settings -> Themes or Plugins and click "Check for updates".
Version 3.4.3 released
November 5, 2023
This update a couple of new features and important fixes, detailed below.
Features & bug fixes
New: admin is asked to re-type password when adding custom theme or plugin
New: installing/updating themes - parameter is now taken from cache file instead of direct URL
New: page GET queries are now sanitised
New: global plugins array now available
New: HTML language parameter can be changed in Settings - Security. Seperate settings available for admin and for visitors. This can be done by replacing your html tag with in your theme.php file
Fix: vulnerability CVE-2023-41425 - thanks to prodigiousMind (YouTube / Github) for reporting the vulnerability
1 click update
IMPORTANT: First backup and update your WonderCMS, then update your themes and plugins.
Login to your WonderCMS website and click "Update". Create a backup prior to updating.
Version 3.4.2 released
May 2, 2023
This update a couple of new features and bug fixes, all detailed below.
Features & bug fixes
New: option in Settings - Security for enabling/disabling redirect to login page or last page, after logging out
New: in Settings - Security, now clearly visible which options are turned ON/OFF
New: option to customise 404 page layout for all 404 pages
New: option to customise login page with hooks
Fix: uploading .doc file format
Fix: Watercolor theme, which returned errors
Fix: Essence theme, it now correctly scales the static content section
Fix: Simple blog plugin to not use commas in description and limit SEO title to 60 characters
Fix: Simple SEO plugin to include subpages
1 click update
IMPORTANT: First backup and update your WonderCMS, then update your themes and plugins.
Login to your WonderCMS website and click "Update". Create a backup prior to updating.
If you can't see the update, open Settings -> Themes or Plugins and click "Check for updates".
Version 3.4.1 released
January 22, 2023
This update brings 3 bug fixes, described below. We've also updated the Summernote plugin. var/softaculous/odm/changelog.txt 0000755 00000006106 15234546762 0013176 0 ustar 00 OpenDocMan 1.3.5 Release Notes
-----------------------------
Posted on January 31, 2016 by Stephen Lawrence in Announcements, Changelog, Releases
OpenDocMan v1.3.5 includes security and bug fixes. No database changes are required. Recommended that all users upgrade from older versions.
Issues resolved:
– Fixed #226 – video/3gpp type
– Fixed #229 – computed base url during install
– Fixed #232 – space separator in dropdown
– Fixed #233 – Add Tamil language
– Fixed #240 – add correct port details to config sample
– Fixed #241 – Added CSRF protection
– Fixed #242 – Added output escaping to views
– Fixed #244 – password fields during install
– Fixed #245 – revision view not working for historical revisions
Misc:
– Add missing x-zip to installer, remove invalid default date values in schema
– Cleanup last_message to use urlencode()
– Added composer.phar and /vendor folder for dependency management
– Added phplint to require-dev for build tests
– Clean up PHP_SELF usage
OpenDocMan v1.3.4 Released
-----------------------------
Posted on August 29, 2015 by Stephen Lawrence in Announcements, Changelog, Files, Releases
OpenDocMan v1.3.4 includes security and bug fixes. No database changes are required.
Additional XSS security enhancements
#166 – Handel broken dataDir mis-configuration more cleanly
#215 – Spelling changes
#216 – Clean up the filetype error message
OpenDocMan v1.3.3 Released
-----------------------------
Posted on August 9, 2015 by Stephen Lawrence in Announcements, Changelog, Releases
The v1.3.3 release of OpenDocMan does not contain any database changes.
#213 – Security – Improve handling for xss High Priority Security
#212 – Add Swedish Translation
#204 – File(plug-ins/index.html/index.html_class.php) is not within the allowed path(s)
#202 – Password length limit too low in 1.3.2
#201 – Mixed line endings cause e-mail body length issues resulting in DKIM signature failure
#200 – Invalid index in index.php version 1.3.2
#10 – Auto-detect when an update has been applied
OpenDocMan v1.3.2 Released
-----------------------------
Posted on February 16, 2015 by Stephen Lawrence in Announcements, Changelog, Releases
OpenDocMan v1.3.2 includes some bug fixes. No database changes are required:
Issue #149 – You are not an administrator
Issue #196 – Smarty requires update
Issue #197 – Settings throwing PDO exception
Issue #198 – Search throwing PDO exception
Issue #199 – Dept Perms not saving
OpenDocMan v1.3.1 Released
----------------------------
Posted on January 9, 2015 by Stephen Lawrence in Announcements, Changelog, Files, Releases
OpenDocMan v1.3.1 includes some bug fixes. No database changes are required:
Issue #195 – Installer – DB version detection not working
Issue #194 – Old password logins are not working
Issue #191 – database.sql – user is being created w/o md5()
Issue #190 – Undefined index Dept_Perms_class.php line 361
Issue #189 – Plugins – Add/Edit pages not showing form fields for plugins properly var/softaculous/omeka/changelog.txt 0000644 00000020465 15234552134 0013502 0 ustar 00 v3.2.1
PHP 8.5 is now supported
Bugs Fixed
The navigation edit form incorrectly warned about unsaved changes even if no changes were made
The "for" attribute did not appear as expected on some checkbox form elements
Headers in the admin interface cut off too soon, leaving unused space
Action links on browse pages did not align properly on some browsers and sometimes lacked proper separation between actions
The Files tab when editing items had alignment and wrapping issues at smaller screen widths
The TinyMCE HTML editor did not limit the editor height as expected
The Role element description for the user form linked to an old documentation location
PHP deprecation fixes:
improper null passing of null browse sorting parameters
improper null passing using Zend_Form with some multi-level forms
improper null passing for some SQL queries
deprecated callback syntax in LightGallery view helper
removed PHP casts that were deprecated in PHP 8.5
imagedestroy calls in the GD derivative strategy
Improvements
Accessibility improvements
Admin browse pages reworked to avoid duplicate links, duplicate text, and improve accessibility for featured/private markers
Added toolbar group labels and help text for the TinyMCE HTML editor
Moved admin "skip to content" link into header to avoid unwanted initial focus
Improved text content for admin sorting links
Labels provided for ARIA landmarks
Labels for form elements when editing item types
SQL sorting is skipped completely for queries that only want to count the results, improving performance for some queries
Invalid "context" queries and advanced search types both emit 404 errors instead of 500, avoiding some common unhelpful error log entries and signaling to crawlers not to recrawl
External Libraries
jQuery 3.7.1 / jQuery UI 1.14.1
getID3 1.9.25
For Developers
New insert_option and update_option hooks fired when options are set
New index_acl_resource route parameter allows API resources to check against ACL for an index permission when performing an index/list operation
v3.2
Bugs
Fixed a JS error that could happen on items search when using an older theme
Fixed an error in the installer when proc_open is disabled and running on PHP 8+
Fixed a deprecation warning when using an LDAP plugin (#1013, fix contributed by @kloor)
Fixed some "missing property" notices (#1014, fix contributed by @kloor)
Fixed issues with element text alignment in the admin interface (partially contributed by @ebellempire)
Fixed a bug where a theme's custom.php file could incorrectly be run multiple times in a single request
Fixed a notice that could happen when using the FormInput helper (#1040, contributed by @csidirop)
Fixed a notice on the admin tag interface
Numerous accessibility fixes and improvements
Improvements
Multiple files can be selected for upload at once
Files selected for upload now show a preview thumbnail when possible
Files can have alt text set for them, both by setting text explicitly for a single file and by configuring an element to use as the alt text
PDFs are now cropped to the "CropBox" by default (can be disabled with new pdfUseCropBox derivative setting)
Password hashing is updated to use PHP's native password_hash (#977, partially contributed by @dicksonlaw583)
S3 support updates and improvements
New acls option to disable ACLs
New storageClass option for setting a storage class to use when storing files
New sigV4 option for using the newer "V4" signature method, needed for working with newer AWS regions
ZendS3Cloudfront storage adapter for serving files through CloudFront
lightGallery ("slider"/"lightbox" viewer used by many themes) updates and improvements
TIFF and JP2 files are now supported (their fullsize derivative will be displayed)
The gallery no longer displays if an item has no gallery-compatible files
Changed lightgallery to use a different ID to avoid possible conflicts (#1056, contributed by @ebellempire)
Alt text will no longer show as a caption in the gallery
theme.useInternalAssets setting now applies to jQuery and jQuery UI
Better database indexing for items, collections, element texts, and sessions
Garbage collection of the database-backed sessions is now enabled even on servers that usually disable it by default (can be enabled with sessions.allowNoGc config setting)
New log.path config setting for changing the log path
Changes
Omeka no longer ships with a default robots.txt file blocking the "files" folder
Deprecation notices are now not reported by default
The database connection now uses the utf8mb4 charset
Localization
Updated translations for many languages
For Developers
New display_records and get_display_records functions, simplifying theme code for things like "random/featured" displays on homepages
New all_element_texts_options filter for changing the options passed to all_element_texts (#1048, contributed by @ebellempire)
New light_gallery_callbacks filter for extending lightGallery support to other filetypes
Deprecations are now not reported by default, set env var OMEKA_REPORT_DEPRECATED to 1 to see them
External Libraries
HTMLPurifier updated to version 4.18.0
getID3 updated to version 1.9.23
TinyMCE updated to version 5.10.9
lightGallery updated to version 2.8.3
Bundled Addons
Exhibit Builder 3.8
Berlin 2.7.6
Seasons 2.8
Thanks, Roy 2.8.0
v3.1.2
Fixes
Fixed a bug where files could appear out of order within an item, particularly if many files were added at once
Fixed an error on newer PHP versions that was thrown when passing non-numeric data as the page URL parameter
Fixed a PHP 8.2 deprecation warning issued from some controllers
Fixed a PHP 8.1 deprecation warning issued from the shortcode handler
Fixed a PHP 8.1 deprecation warning issued from the Imagick derivative image strategy
Fixed an issue where the download button on the lightGallery viewer in themes could be impossible to press
Fixed an error that could occur when using the es_CO locale on some pages where formatted numbers were displayed (e.g. file sizes and limits)
Fixed a notice issued from theme configuration when uploading a file
Fixed a notice issued from the tag mixin
Fixed an error that could occur when saving custom links in the navigation
Fixed an error that could cause Omeka to hang when uploading some images with embedded XMP metadata
Fixed an error that could occur in the removeZeroDates migration when upgrading from a very old Omeka version when using MySQL 8
Fixed the display of error messages on the installer and login forms
Fixed the admin search form to restore the "is not exactly" search type
Fixed various small issues in the admin theme
Changes
Theme versions are now displayed in the theme selection view
Added admin styling for number, email, and search type inputs
Field explanations in the admin theme are no longer larger than other text like field labels
Removed admin theme references to some obsolete fonts, images, and stylesheets
The font style and size in the admin theme is now set more loosely, fixing some issues where more specific font settings unexpectedly were not applied
The Browser mimetype detection method is removed
Mimetype detection now stops once a concrete type is detected, rather than trying all options
External Libraries
Updated getID3 to version 1.9.22
v3.1.1
Fixed the "advanced search" options box appearing when it shouldn't have on the public side
Fixed the public.css styles to load only in public themes, not on the admin
Fixed collections/show to match other views in how it decides when to show thumbnails
Fixed bugs that triggered deprecation notices in some situations when running on PHP 8.1+
Allowed file uploads to proceed when running on servers that disable PHP's shell execution functions on PHP 8+
Added IDs to more easily target advanced search components for CSS
Accessibility improvements for search options and labels, sorting indicators, featured/private icons, action links
Updated translations for Catalan and Czech
Updated Exhibit Builder to 3.6.1, Thanks, Roy to 2.7.1, Seasons to 2.7, and Berlin to 2.7.5 var/softaculous/goffice6/changelog.txt 0000755 00000003670 15234555575 0014114 0 ustar 00 17-07-2017 6.1.139
- Debian packages are signed with new secure key now 0758838B
- Core: Add a config parm to show a message on the login page: $config['login_message'] = 'Hello We are doing an update';
12-06-2017 6.1.138
- Core: Make setValidationError function in Model public instead of protected
- Core: Added fireEvent for validate function in activeRecord
- Projects2: Remove expenses if you don't have finance permissions
15-05-2017 6.1.137
- Calender: fix load resource store
- Documenttemplates: Fixed issue with document templates when the current model is not defined in the template
- Customfields: Let the api return all customfield content, so also the content of textarea fields.
- Email: fix mailto function subject
- Billing: Fixed download of catalogue import sample file.
- Addressbook / send newsletter: Is already running.
- Savemailas: Automatically fill in the event subject when creating it from an email
11-04-2017 6.1.136
- Add employee bug
- Files larger then 2MB didn't start uploader automatically
- Core: Fixed issue with processing the customfield displaypanel response when the permissions check is disabled
- Calendar: Fixed issue with showing tasks in a calendar view
- Addressbook: Fix repeatedly start mailing list
- Calendar will export to ICS correctly in timezones that do not apply DST
- Billing: Fixed issue with linking projects with the project select field in order dialog
- Core/Email: Add config value swift_email_body_force_to_base64 to turn off the base64 mail body
28-03-2017 6.1.135
- Opening files from contacts failed the second time.
27-03-2017 6.1.134
- files: Fix up button
- Timeregistration: Fixed problem on deleting time entries when the hoursApproval is not installed.
- Addressbook/Customfields: Fixed problem on contact and company customfields where a duplicate ID is set for "Only from these addressbooks (IDs)"
- Tasks: Added id column to tasklists grid in "Task module > Administration > Task lists"
var/softaculous/gedview/changelog.txt 0000755 00000067005 15234556252 0014051 0 ustar 00 # $Id: changelog.txt 7171 2017-11-05 16:18:39Z canajun2eh $
=====================================================================
Version 4.3.0
- Fixed: Page footer links could end with an orphan ampersand or question-mark (canajun2eh)
- Changed: Add more checks for hacking in incoming URI (canajun2eh)
- Fixed: "Invalid GEDCOM format" error when saving an edited shared note (canajun2eh)
- Changed: Speed improvement in reading 16-bit (256 colour) BMP images (canajun2eh)
- Fixed: Undefined variable mod in module.php line 78 (canajun2eh)
- Changed: Improve performance of BMP image support (canajun2eh)
- Fixed: Syntax error in /includes/extras/functions.en.php (canajun2eh)
- Changed: Move functions used only for debugging into their own functions_debug.php file (canajun2eh)
- Added: Implement limited support for BMP images in media files -- can only write 24-bit images (canajun2eh)
- Fixed: Correct generation of ordinal suffix in English (1st, 2nd, 3rd, etc.), French, and German (canajun2eh)
- Fixed: "Download calendar file" not working in Todays Events, Upcoming Events, and Yahrzeiten blocks (canajun2eh)
- Changed: Replaced /images/hcal.png with ical.png (canajun2eh)
- Fixed: Yahrzeiten block does not obey "Allow download" configuration option (canajun2eh)
- Fixed: ical.php not respecting language selection -- uses only English (canajun2eh)
- Changed: Moved ical functions out of ical.php into their own file within includes/functions (canajun2eh)
- Fixed: ical.php causes errors in class GedcomDate (canajun2eh)
- Fixed: Person names should not contain comma when family name comes first (as in Hungarian) (canajun2eh)
- Fixed: Undefined index "bulkMail" in includes/authentication.php when sending the Review Changes message (canajun2eh)
- Changed: Make all language files HTML5 compliant by re-coding BIG, CENTER, FONT, and TT elements (canajun2eh)
- Fixed: Help text for Customize Welcome page not displaying properly (canajun2eh)
- Fixed: PHP7 warning about class constructor naming convention (canajun2eh)
- Added: Check sending and receiving e-mail addresses for validity before trying to send (canajun2eh)
- Updated: PHPMailer package updated to version 5.2.23 (canajun2eh)
- Fixed: Mail send reported success even when sending actually failed (canajun2eh)
- Fixed: Current SMTP port number does not display properly when reconfiguring (canajun2eh)
- Fixed: Bulk messages to all users or inactive users not working (canajun2eh)
- Fixed: PHP7 complaining about arithmetic involving strings passed to class_gedcomrecord by class_note (Canajun2eh)
- Fixed: Undefined variable queryString in rss.php (canajun2eh)
- Fixed: PHP7 complaining about arithmetic involving strings (Canajun2eh)
- Fixed: PHP7 errors caused by incorrect usage of microtime() function (Philippe Conde)
- Updated: More improvements to Googlemap module (Leonhard Zachl)
- Fixed: Several errors in Googlemap module (tbabczynski)
- Updated: Various improvements to Googlemap module (tbabczynski)
- Fixed: Correct polish tradition of wife's surname in batch_update (tbabczynski)
- Fixed: E-mails to admin sometimes sent in wrong language (canajun2eh)
- Fixed: PHP 7 error when SALT is missing in call to crypt() function (canajun2eh)
- Fixed: PHP 7 error in eval() function when it's fed the config.php file (canajun2eh)
- Fixed: Mysql 5.7 error "1171 All parts of a PRIMARY KEY must be NOT NULL" (canajun2eh)
- Fixed: Several instances of "array to string conversion" errors (canajun2eh)
- Fixed: Call to undefined function cleanQueryString() in rss.php (canajun2eh)
- Updated: Improved support for Googlemaps version 3 (Leonhard Zachl)
- Fixed: User-to-user messaging ignores e-mail option (canajun2eh)
- Fixed: Incorrect implementation of some messaging options in user profiles (canajun2eh)
- Updated: Implement https method of calling Google charts and support for Googlemaps version 3 (Leonhard Zachl)
- Fixed: German language files use double angle quotation marks incorrectly (canajun2eh)
- Changed: Updates to PEAR.php and new PEAR5.php to accommodate more recent versions of PHP (Lester Caine)
- Changed: Improve checks for improperly formed URI (canajun2eh)
- Fixed: Incorrect call to static function in PEAR.php (Pasquale Ceres)
- Changed: Remove "union" (a legitimate place name) from SQL injection check (canajun2eh)
- Fixed: Adding a new media item while editing a Fact requires entry of the Indi, Family, or Source ID number (canajun2eh)
- Fixed: Adding a new media item while editing a Fact causes "You are not welcome here" message (canajun2eh)
- Changed: Automatically copy ID numbers of new shared notes, sources, and repositories (canajun2eh)
- Fixed: Notes containing two at-symbols are sometimes incorrectly identified as referencing shared notes (canajun2eh)
- Changed: Anonymous remote connections are now optional (Pasquale Ceres)
- Fixed: SOAP errors cause out-of-memory errors (Pasquale Ceres)
- Fixed: "update" should not be part of SQL injection check (canajun2eh)
- Fixed: Import Progess bar should show percentage of total file size (canajun2eh)
- Changed: Tighten SQL and cross-site script injection checks and relocate them to includes/session_spider.php (canajun2eh)
- Fixed: Remote requests can return wrong results (Pasquale Ceres)
- Fixed: Search returns wrong results when hits occur in non-genealogical tags (Pasquale Ceres)
- Fixed: Wrong pseudo-icons for some file types, and Lightbox shouldn't try to handle HTM(L), DOC(X), PDF and TEX media files (canajun2eh)
- Changed: General and Soundex searches, database checkboxes should be above search terms instead of below (canajun2eh)
- Changed: Top menu "Search" should be using "post" method instead of "get", and field is too short (canajun2eh)
- Fixed: Undefined variable in block_main_temp.php when Cookie Policy block is activated (canajun2eh)
- Changed: Show Cookie Policy block only on Welcome page and add to top of default list (canajun2eh)
- Added: Block to display site's Cookie policy, as required by EU Cookie Law (pceres and canajun2eh)
- Fixed: Undefined variable in "includes/classes/class_reportpdf.php" (canajun2eh)
- Changed: Make report generator upwards compatible with TCPDF version 6.2 (canajun2eh)
- Added: Log fact that attempt to inject a script was detected (canajun2eh)
- Fixed: Script injection vulnerability (canajun2eh)
- Changed: Implement revised Clustrmaps calling sequence (sridharb)
- Corrected: Previous incorrect fix to includes/functions/functions_import.php (canajun2eh)
- Fixed: Undefined variable in includes/functions/functions_import.php (canajun2eh)
- Fixed: Undefined variable in includes/classes/class_reportbase.php (canajun2eh)
- Fixed: Import GEDCOM into new installation on systems using MySQL version 5.5 extremely slow (canajun2eh)
- Fixed: Various instances of "preg_replace(): The /e modifier is deprecated" (lsces, canajun2eh)
- Updated: Arabic language files countries.ar.php and facts.ar.php (samar)
- Added: Vagabondo added to list of known search engines (canajun2eh)
- Fixed: Cannot edit existing shared note (canajun2eh)
- Updated: Arabic language files facts.ar.php and lang.ar.php (samar)
- Fixed: Remote link to another GEDCOM does not work (epooch)
- Fixed: Incorrect age calculation in various statistics when age is less than 1 year (gbvalor)
- Updated: Piwik tracking code to use POST instead of GET to improve security (canajun2eh)
- Updated: Piwik tracking code to Piwik version 2.x (canajun2eh)
- Fixed: Errors in functions_rss.php caused by PHP 5.4 incompatibility (canajun2eh)
- Fixed: Errors in indilist.php caused by PHP 5.4 incompatibility (canajun2eh)
- Added: Additions to list of bad bots (canajun2eh)
- Deleted: Files with Hebrew names in places/isr directory (canajun2eh)
- Changed: Removed accents from several file names in images/flags directory (canajun2eh)
- Fixed: [ 3527034 ] error autocomplete places (dyspd)
- Added: Temporary (timed) ban of hacker IPs (canajun2eh)
- Added: Support for date formats like 2012-12-24 and 20121224 when importing GEDCOM (canajun2eh)
- Changed: Show up to 5 errors in Date or Place when importing GEDCOM (canajun2eh)
- Changed: Country code for South Sudan changed from SSD to RSS (canajun2eh)
- Fixed: [ 3571316 ] As of SVN 7075, can't upload any GEDCOMs (canajun2eh)
- Fixed: [ 3569578 ] PGV not working in PHP 5.4.0 (canajun2eh)
- Fixed: [ 3532300 ] Can't change ID of existing user (canajun2eh)
- Fixed: [ 3532299 ] Can't send message to self (canajun2eh)
- Fixed: Search between PGV sites not working properly (Pasquale Ceres)
- Fixed: [ 3516462 ] Incorrect call to find_media_record() (canajun2eh)
- Fixed: [ 3495818 ] Manage Media - repeated Login requests (canajun2eh)
- Fixed: [ 3474329 ] Sub-menus disappear too quickly (canajun2eh)
- Fixed: [ 3471553 ] Search Help Text doesn't print search results properly (canajun2eh)
- Fixed: [ 3422404 ] Late-in-life CHR, BAPM, _BRTM events distort statistics (canajun2eh)
- Fixed: [ 3409213 ] Error when privacy settings enabled (blaza-pl)
- Fixed: [ 3417402 ] Function createTempUser() not working (canajun2eh)
- Added: List all web page links in media object list near top of Personal Details page (George Pauly and canajun2eh)
- Added: Use media object title to caption image on Personal Details page (canajun2eh)
- Added: Configurable links to Google Analytics, Piwik Analytics, ClustrMaps Analytics (canajun2eh)
- Updated: dhtmlXTabbar to version 3.0 build 110707 (canajun2eh)
- Fixed: Authentication between PGV sites with linked GEDCOMs not working properly (Pasquale Ceres)
- Fixed: [ 3317813 ] Cannot remove entries from Banned IP list (canajun2eh)
- Fixed: [ 3316545 ] PclZip fails when php_uname() is disabled by hosting company (canajun2eh)
- Added: [ 3279989 ] Support for Vietnam clickable maps while editing places (cdeces)
- Fixed: [ 3208343 ] Content of additional Advanced HTML blocks may be lost (ggpauly)
- Fixed: [ 3202881 ] Not able to accept changes (canajun2eh)
- Fixed: [ 3197154 ] PDO/Postgresql: error in branches list (canajun2eh)
- Deleted: wordsearch module (canajun2eh)
- Fixed: [ 3187504 ] Fatal error in Research Assistant (canajun2eh)
- Changed: Relocate "Prev" and "Next" buttons in Install wizard (canajun2eh)
- Fixed: [ 3179194 ] Upload GEDCOM fails (canajun2eh)
- Fixed: [ 3173600 ] Manage Media forgets certain options after media change made (canajun2eh)
- Fixed: [ 3177042 ] Manage Media, Add link errors when entering ID directly (canajun2eh)
- Fixed: [ 3174421 ] Error functions_DB.php in fetch_gedcom_record (pathan)
- Fixed: [ 3171242 ] pedigree_image_xxx styles (canajun2eh)
Version 4.2.4
- Fixed: [ 3121290 ] Reports: Source list damaged (canajun2eh)
- Fixed: [ 3119940 ] Reports: "Place" text not needed in front of places (canajun2eh)
- Fixed: [ 3119928 ] Reports: Cremation is not reported (canajun2eh)
- Fixed: [ 3119921 ] Reports: Missing pronoun in Descendancy report (canajun2eh)
- Fixed: [ 3119915 ] Reports: Incorrect Source footnote format (canajun2eh)
- Fixed: [ 3119907 ] Reports: Not showing Level 2 SOUR sub-records on NAME record (canajun2eh)
- Fixed: Incorrect URL when using Geonames search in Autocomplete of place names (canajun2eh)
- Deleted: Keyboard Shortcuts feature (canajun2eh)
- Changed: New rules for finding highlighted object on charts, Indi, and Family pages (canajun2eh)
- Fixed: [ 2947598 ] Site Map missing the $SERVER_URLvar? (fisharebest)
- Changed: Behaviour of autocomplete for INDI fields, input of an id grabs only the exact id and extends by a further digit, makes it much faster for large gedcoms (volschin)
- Fixed: [ 2945678 ] [6910] Add new child/autocomplete (fisharebest)
- Update: jQuery 1.4.1 (volschin)
- Fixed: [ 2938600 ] 4.2.3 indi Map tab: no map & Java error (wooc)
- Fixed: [ 2943837 ] Placenames in Edit Interface in latest PGV (fisharebest)
- Fixed: [ 2943263 ] Logout ERROR 2 (fisharebest)
- Added: modules.css file for all themes (windmillway)
- Fixed: [ 2939710 ] [6841?] Startup error (fisharebest)
- Fixed: [ 2937064 ] Upgrade from 4.2.3 loses users/accounts (fisharebest)
- Changed: Default sorting by lastname in user administration (volschin)
- Fixed: Sorting by username in user administration (volschin)
- Added: [ 1717787 ] Gedcomname.gedpgv_counters.txt in backup (fisharebest)
- Added: [ 2677563 ] Counters in MySQL rather than in file. (fisharebest)
- Fixed: [ 2928619 ] Burial w/o Death -> (on the date of death) (fisharebest)
- Fixed: [ 1859794 ] individual titles (i.e. husband,wife) on Close relatives tab (fisharebest)
- Fixed: [ 2934003 ] Pictures of other gedcom in Multimedia list (canajun2eh)
- Changed: Fan chart font and colors moved from style.css to theme.php (canajun2eh)
- Fixed: [ 2917682 ] ERROR 8 in access log (wooc)
- Update: jQuery.autocomplete plugin 1.1 (volschin)
- Update: TCPDF 4.8.024 (volschin)
- Fixed: Include change of favorites in merge of records (volschin)
- Fixed: [ 2933020 ] 4.2.3 Bracketing issue in Russian (wooc)
- Fixed: [ 2931733 } 4.2.3 Name entering and editing (fisharebest)
- Fixed: [ 2930541 ] PGV custom tags not being removed on download V4.2.3 (fisharebest)
- Fixed: [ 2931697 ] 4.2.3 countries.csv ... Iraq is called IRN (fisharebest)
- Fixed: [ 2927240 ] 4.2.3 ... un-def var gid when importing (fisharebest)
- Added: [ 1863843 ] Pedigree Google Map (kiwi_pgv/wooc)
- Changed: UI for user list (volschin)
- Added: Silhouette images support (kiwi_pgv/wooc)
- Fixed: [ 2923977 ] PGV 4.2.3 ... redirection via login (wooc)
- Fixed: [ 2923747 ] Bug in authentication.php (fisharebest)
- Fixed: [ 2923224 ] Missing Space in Shared Note View GEDCOM Record (wooc)
- Fixed: Sorting by gedcom filename instead of id (volschin)
- Fixed: [ 2886694 ] add existing wife/husband SOUR etc (wooc)
- Fixed: [ 2921858 ] Private marking in marriages (fisharebest)
- Fixed: is_dead() was ignoring certain undated death events (fisharebest)
Version 4.2.3 2009-12-26
- Update: TCPDF 4.8.019 (volschin)
- Fixed: [ 2131272 ] do not update CHAN not remembered (wooc)
- Fixed: [ 2563934 ] Sitemap module should only submit public URL's (wooc)
- Fixed: [ 2905609 ] Address handling in quickupdate (volschin)
- Fixed: [ 1953767 ] 4.1.5rel ... Negative #s in import statistics (fisharebest)
- Update: PCLzip 2.8.2 (volschin)
- Update: TCPDF 4.8.016 (volschin)
- Fixed: [ 1738619 ] Deleting Gedcom file - Misc Entried Remain in DB (fisharebest)
- Fixed: [ 2881117 ] 4.2.2 Merge 2 Indis makes 2 clones in Fam record (fisharebest)
- Fixed: [ 2840835 ] Checker reports warning if CONT tag value is all spaces (fisharebest)
- Fixed: [ 2900966 ] batch update for death records (fisharebest)
- Fixed: [ 2898717 ] No AGE field in LDS GUIs (fisharebest)
- Fixed: Extended javascript change for dates like 21.12.1880 also with a prefix like AFT (volschin)
- Fixed: Wrong uppercase javascript change for date phrases in brackets (volschin)
- Fixed: [ 2895822 ] SVN 6380 Fatal error class_stats.php (fisharebest)
- Fixed: [ 2891461 ] Fault in the Quick add form (wooc)
- Fixed: [ 1771095 ] Place Check - Index Directory (fisharebest)
- Update: is_dead() calculations now take account of non-gregorian dates
- Fixed: [ 1941711 ] Age at which to assume a person is dead Off By 1 Year (fisharebest)
- Fixed: [ 2033046 ] Misleading text for changes_present (fisharebest)
- Fixed: [ 1782849 ] Minimal Theme - No text shown - Research Assistant top menu (fisharebest)
- Fixed: [ 1390658 ] Ever Increasing URLs (e.g. login link) (fisharebest)
- Fixed: [ 1922109 ] Limited entries in "Most Common Surnames" statistic (fisharebest)
- Fixed: [ 2781212 ] Descendancy Chart - NCHI (fisharebest)
- Fixed: [ 2890112 ] Shared Notes list doesn't display titles (4.2.3 svn) (fisharebest)
- Fixed: [ 2891075 ] MINOR name display anomaly (fisharebest)
- Fixed: [ 2891924 ] Another HTML rendering bug (fisharebest)
- Fixed: [ 2891960 ] Date/age/death issue (fisharebest)
- Fixed: [ 2890679 ] Sorting sources (fisharebest)
- Fixed: [ 2890066 ] PGV won't use browser's preferred language (canajun2eh)
- Fixed: [ 2881979 ] Tab problem individual page (fisharebest/julianito)
- Fixed: [ 2882104 ] Minor CSS detail (fisharebest)
- Fixed: [ 2890031 ] SVN, User migration, wrong DB function (fisharebest)
- Added: [ 2882125 ] Date sorting requests (fisharebest)
- Fixed: [ 2818804 ] PHP 5.3 errors galore (fisharebest/volschin)
- Fixed: [ 2825324 ] Source Tab Skips Sources on Names (fisharebest)
- Fixed: [ 2879844 ] [4.2.3] General Search results (fisharebest)
- Fixed: [ 2888957 ] SVN, DB import fails with samll letter to insert into n_sort (fisharebest)
- Fixed: [ 2879600 ] Googlemaps ignores privacy rules (wooc)
- Update: Prototype 1.6.1 and Script.aculo.us 1.8.3 (volschin)
- Update: Module for PunBB 1.2.22 (volschin)
- Fixed: [ 2865480 ] 4.2.2 Googlemaps, Place Hierarchy not display in Chrome (wooc)
- Fixed: [ 2871549 ] Re-named PGV folder requires manual edit of config.php (canajun2eh)
- Fixed: [ 2869455 ] Unable to delete a research assistant folder (patch by mmoreno)
- Added: [ 2843471 ] Remove "Remember me..." (fisharebest)
- Fixed: [ 2857144 ] v4.2.2 sitemap files contain duplicate entries for multi-ged (fisharebest)
- Fixed: [ 2827267 ] Fix name slashes and spaces of all types of names (fisharebest)
- Update: Performance of privacy calculations (fisharebest)
- Fixed: [ 2858324 ] SVN error 8 on edit family popup (fisharebest)
- Fixed: [ 2866474 ] Deleting a Task (fisharebest)
- Fixed: [ 2844024 ] class_gedcomrecord.php 5784 (fisharebest)
- Fixed: [ 2848954 ] Incorrect page headers (canajun2eh)
- Fixed: [ 2844011 ] gedrecord.php 4462 minor issue (fisharebest)
- Update: Updated readme.txt to highlight the necessity for PDO/mysql (windmillway)
- Added: New statistics (wooc)
- Fixed: [ 2833809 ] Cannot empty all the clipping cart (canajun2eh)
Version 4.2.2 2009-08-01
- Fixed: [ 2826529 ] 4.2.2svn5976 - Advanced HTML square brackets error (wooc)
- Fixed: [ 1625495 ] 4.1 Chinese not shown in Report (imsza)
- Fixed: [ 1410725 ] 4.0b5: Footnote numbers in reports cause line breaks (imsza)
- Fixed: [ 1568536 ] Ahnentafel report formatting issues (imsza)
- Fixed: [ 1539988 ] Family Group Report - PDF Error (imsza)
- Fixed: [ 1779795 ] SVN1489 Multiple Minor Issues with HTML Ahnen Reports (imsza)
- Fixed: [ 2820985 ] [New Reports] PGV Version Number Leak (imsza)
- Added: All "List" reports that was originally made for portrait also support 'landscape' for a wider view (imsza)
- Added: All Report has user Font selection drop-down box (imsza)
- Added: "Themes" is enabled. I have no idea how the Themes is working with the reports! But, its cute... (imsza)
- Fixed: "Unknown gender" is also handled correctly in the xml files (imsza)
- Fixed: Multiple image support even on multiple pages (imsza)
- Fixed: [ 2820729 ] Approve media changes on MediaViewer does not work (fisharebest)
- Fixed: database download doesn't respect Privacy (canajun2eh)
- Added: selectable Privacy for database or clipboard download (canajun2eh)
- Added: allow constant prefix to file names in database or clipboard download (canajun2eh)
- Added: selectable directory separator for file names in database or clipboard download (canajun2eh)
- Changed: temporarily disable GRAMPS download for clipboard -- ZIP file has errors (canajun2eh)
- Added: [ 2806347 ] Show xref ID on edit screen (fisharebest)
- Fixed: [ 2794158 ] DEAT age 0 leaves orphaned AGE event (fisharebest)
- Fixed: [ 2814930 ] New user with space in username is not editable (fisharebest)
- Fixed: [ 2820278 ] Changes vanish (wooc)
- Fixed: [ 2820508 ] [SVN:5891] famid not propogating to report (fisharebest)
- Fixed: [ 2815875 ] Theme-related problems in Opera (volschin)
- Added: [ 2798575 ] clustrmaps support similar to googlemaps. Enable
by adding define('PGV_CLUSTRMAPS', 'your website address'); to your
config.php (sridharb)
- Fixed: [ 2816347 ] XHTML - family_nav.php (windmillway)
- Fixed: [ 2815546 ] Timeline Chart display issue (wooc)
- Added: [ 2812244 ] List branches by surname (opus27)
- Fixed: [ 2811443 ] [5774] Double helping of tables (fisharebest)
- Fixed: [ 2806853 ] Minor error in faq.php css classes (fisharebest)
- Fixed: [ 2579268 ] Nonexistent != Private != blank (wooc)
- Fixed: [ 2807477 ] Minor tweaks to gedcheck.php (fisharebest/kiwi_pgv)
- Fixed: [ 2806749 ] Cache needs to be cleared when changing theme (canajun2eh)
- Fixed: [ 2806364 ] Typo in functions_mediadb.php (wgroleau)
- Fixed: [ 2806055 ] Incorrect calc - "Person who lived longest" (fisharebest)
- Fixed: [ 2578740 ] Indilist Mother's name wrong (fisharebest)
- Fixed: [ 2801382 ] Fatal error: Uncaught exception 'PDOException' (windmillway)
- Added: [ 2741685 ] SQL Version Update (fisharebest)
- Fixed: [ 1479083 ] 4b07 - malformed links generated (fisharebest)
- Fixed: [ 1767948 ] FAQ header doesn't like quotes upon edit (fisharebest)
- Fixed: [ 2231897 ] [416pre] - Add GEDCOM ... Default person (fisharebest)
- Fixed: [ 1783041 ] (4.1) Unable to find record with ID (fisharebest)
- Changed: Fixed error occurring in inverselink.php, Changed "add" simplyxxx theme icons for clarity, small language change (windmillway)
- Added [ 1209782 ] Top Down pedigree tree (wooc)
- Changed: Various core files in preparation for GEDFact_assistant/MEDIA/ module (windmillway)
- Changed: Placed restriction on GEDFact_assistant/MEDIA/ to be PGV_USER_GEDCOM_ADMIN only (windmillway)
- Fixed: [ 2786280 ] 4.2.1 search results in families have duplication (fisharebest)
- Fixed: [ 2790245 ] link error in standard theme (fisharebest)
- Changed - Various core files in preparation for GEDFact_assistant module (windmillway)
- Changed Move various media "thumbnails" to the "index/media" subdirectory (canajun2eh)
- Fixed Text media items not being displayed properly with Lightbox. (windmillway)
- Fixed [ 2789308 ] ERROR 8: Constant PGV_GOOGLE_ANALYTICS already defined (fisharebest)
- Fixed Errors on Album page and Reorder Media page highlighted by introduction of PDO parameters (windmillway)
- Added Comment field to "Banned by IP" and "Search engine by IP" lists on Manage Servers page (canajun2eh)
- Fixed [ 2779222 ] Adding a wrong date destroys all individual lists (fisharebest)
- Fixed [ 2780483 ] nick name ordering error/mess (fisharebest)
- Fixed [ 2780414 ] Clippings Cart MySQL Error (fisharebest)
- Fixed [ 2774786 ] [G Map Module] GOverviewMapControl Defaults to Empty Display (wooc)
- Fixed [ 1694445 ] SVN 1593: Individual Report, Text align (wooc)
- Added [ 2671412 ] Link to Statistics Charts from GEDCOM Statistics Block (wooc)
- Fixed [ 2734393 ] Review Changes Diff for Appended fails (fisharebest)
Version 4.2.1 2009-04-05
- Fixed: [ 2730614 ] SVN 5320: Media Upload fails (canajun2eh)
- Fixed: [ 2595714 ] Truncated first letter of thumb name if non-ASCII character (fisharebest)
- Added: Cemetery report (canajun2eh)
- Fixed: [ 2721892 ] Media Viewer ignores "Hide file name" config option (canajun2eh)
- Fixed: [ 2702565 ] [4.2-4.2.5241] autocomplete not working when accented charac (wooc)
- Added: Make Autocomplete an option in the GEDCOM config, Edit section (canajun2eh)
- Fixed: [ 2634211 ] [4.2]+[4.1.6] Individual Add(ed) Facts not stored (fisharebest)
- Fixed: [ 2604802 ] In the "Find Place" link the "Display all" list doesn't show (wooc)
- Fixed: [ 2711647 ] Privacy option changes not working (canajun2eh)
- Fixed: [ 2708857 ] [4.2.1svn5259] Lifespan chart reversed up/down arrows (wooc)
- Fixed: [ 2333142 ] Relationship error (wooc)
- Fixed: [ 2702570 ] [4.2-4.2.5241] autocomplete not active in quickupd. fields (wooc)
- Fixed: [ 2702575 ] [4.2-4.2.5241] place with ( or with ) in googlemaps module (wooc)
- Added: Extra language file for Shared Notes (windmillway)
- Fixed: [ 2694015 ] Incorrect handling of Highlighted image (canajun2eh)
- Changed: Add language editor support for comments on variable definition lines (canajun2eh)
- Changed: Add language editor support for var. names or text enclosed in apostrophes (canajun2eh)
- Fixed: [ 2687480 ] Language file editor wrong output when string is ";" (canajun2eh)
- Fixed: [ 2685597 ] Missing underline for Preferred Name on Personal Details page (canajun2eh)
- Added: [ 2684836 ] Files created with sitemap give an error on Google (borkhuis/wooc)
- Changed: improved user interface for adding new fact from clipboard (canajun2eh)
- Fixed: [ 2672126 ] Media Highlight/Thumb selectors not shown to editing users (canajun2eh)
- Fixed: Log Error: admin - ERROR 8: Undefined index: small; (windmillway)
- Changed: removed superfluous "add unlinked note" link on notelist.php page (windmillway)
- Changed: removed superfluous "add unlinked note/source" link on find.php pop-up (windmillway)
- Fixed: Minimal and Wood Themes not appearing in Change Theme Dropdown list (windmillway)
- Fixed: Corrected Tag exclusion on Filtering when finding Shared Notes (Thanks Greg) (windmillway)
- Fixed: Enabled Filtering when finding Shared Notes (Find.php) (Just a pending email to Greg on tag exclusion) (windmillway)
- Fixed: Error to $factarray caused by previous update svn5132 (windmillway)
- Added: Admin page, Add "unlinked note" and reorganised sections.(Thanks for the code Nigel). Added: various Help Texts for Shared Notes. (windmillway)
- Changed: added missing Shared Note icon references to Xenea Theme (windmillway)
- Added: Sour Tag for shared Notes on note.php page(windmillway)
- Added: Shared Notes (or Linked Notes) support (windmillway)
- Fixed: [ 2637256 ] Extended Relatives Report Header Overwritten (wooc)
- Fixed: [ 2639453 ] Place check indicating X is difficult to tell the colour (fisharebest)
- Changed: Add option to sort Manage Media list and MultiMedia list (canajun2eh)
- Fixed: [ 2612938 ] 4.2.1 svn rev.5059 - Translation error (fisharebest)
- Fixed: [ 2608286 ] Copy EVENT causes error in option field (fisharebest)
- Fixed: [ 2556004 ] 4.2.0 - Reports without data output (fisharebest)
- Fixed: [ 2562498 ] 4993 General Search - last change (fisharebest)
- Fixed: [ 2555000 ] 4.2 Anniversary Calendar no privacy rules (fisharebest)
- Added: [ 2522082 ] Go To Merged Record (fisharebest)
- Added: [ 2580275 ] 4.2 R.A. improved functionality for Autosearch on Ancestry (erostew/fisharebest)
- Fixed: [ 2567372 ] Admin does not always see changes to approve correctly (fisharebest)
- Fixed: [ 2328664 ] Research Assistent (fisharebest)
- Added: Support for Serbian (Latin alphabet) (canajun2eh)
- Fixed: [ 2534707 ] [4897] MARR source not added when date is missing. (fisharebest)
- Fixed: [ 2567389 ] "Media Viewer using full GEDCOM Media URL"; Also "source.php error with Lightbox"; (windmillway)
- Changed: Removed "Update Photo" option from Quick Update (canajun2eh)
- Changed: Improved user interface in Manage Media (canajun2eh)
- Fixed: [ 2580303 ] GoogleMap - Add place not working in FireFox (wooc)
- Added: .wmv support to JWplayer module. (windmillway)
- Fixed: [ 2116080 ] [3870] Favourites missing from Xenea (wooc)
- Fixed: [ 2477810 ] Media Title Not Displaying on mediaviewer.php (canajun2eh)
- Fixed: [ 2350355 ] PGV 4.1.6 "Printer-friendly version" (wooc)
- Fixed: [ 2556175 ] Error 2 w Edit geographic place locations (wooc)
- Fixed: [ 2555840 ] Interactive Tree doesn't work when living names hidden (canajun2eh)
- Fixed: [ 2555574 ] Interactive Tree incorrect text spacing inside box (canajun2eh)
- Added: Preparatory work to enable config option to turn on/off each Tab Navigator on Indi page (windmillway)
- Fixed: [ 2555579 ] Interactive Tree box disappears when clicked (wooc)
- Fixed: [ 2329962 ] autocomplete css (wooc)
- Fixed: [ 2555011 ] Quick Update fails with suffix on name (wooc)
- Fixed: [ 2554221 ] 4.2 Interactive tree shown for user and not the individual (canajun2eh)
- Fixed: [ 1969541 ] 4.1.5 Quick Update: Address gets concatenated (wooc)
- Fixed: [ 1803282 ] [4.1.2] Adding OCCU in Quick Update wont work (wooc) var/softaculous/litecart/changelog.txt 0000755 00000025573 15234564350 0014230 0 ustar 00 [-] LiteCart 2.6.3
+ Allow trailing slash on Contact Us
+ Minify scripts and update checksums
+ Switch JS "eval" string for window function ref
* Adjust feedback for missing Imagick support
* Developer related updates and adjustments
* Ensure RGB colorspace to avoid issues with CMYK as reported in AVIF...
* Fix a bunch of Imagick transparency issues
* Fix add missing handling fee
* Fix colorat out of bounds during GD trim() image
* Fix delete vmod
* Fix header overwrite issue
* Fix inability to input price in cents e.g. 0.95
* Fix installed version vmod comparison
* Fix issue #361 - Sort products
* Fix issue #363 - Add missing index for date_created
* Fix issue #364 - media max-width
* Fix issue #366 - Add index for category_id in lc_products_to_catego...
* Fix issue #366 - Add missing indexes for lc_products_campaigns
* Fix issue #367 - PHP 5.6.x compatibility
* Fix issue #368 - Fill whitespace color
* Fix issue #369 …
* Fix missing group by
* Fix obsolete use of route::indentify()
* Fix overwrite image
* Fix select manufacturer width
* Fix set name and sku
* Fix uglify script command
* Fix undefined constant error
* Fix unintentional bold
* Fix unreliable parse_url()
* Merge pull request #358 from IBBoard/customer-service-with-slash
* Move session security timestamp setting
* Remove some more special characters from path friendly name
* Rename DEVELOPERS.md to CONTRIBUTING.md
* Replace en-dash and m-dash with hyphens in urls/filenames
* Set checkout to 1280 wide instead of 1440
* Update form function type to new syntax
* Updates for PHP 8.4
* Use blank layout for error page in backend
Released Oct 17 2025
[-] LiteCart 2.6.2
Download
+ Who Purchased report
+ Add url() to form functions
* Fix shipping and payment fee in RTL
* Fix rename enable/disable vMod
* Fix loading of multiple custom attributes
* Fix check products for options during attribute deletion
* Fix product attribute index
* Fix PHP warning for missing HTTP POST param
* Fix domestic name alias
* Fix search params when setting sort parameter
* Fix vMod filename when downloading
* Fix issue #354 - Tax calculation does not take campaign price into consideration
* Fix dock under parent
* Fix early word wrapping should be handled in sending component instead
* Fix halt on invalid characters causing MySQL to panic
* Fix CLI installer
* Fix issue #356
* Fix PHP notice when no payment option was set
* Fix admin session language
* Fix sub page nesting
* Ensure loading of lightbox components
* Remove last empty line from CSV
* Log last email errors to entity
* Unset memory_limit during error log processing
* Payson discontinued by Svea
* Ability to set no thousands separator
* Split long lines into segments
* Add ability to filter Most Sold Products by manufacturer or country
* Ability to filter Most Shopping Customers by country
* Ability to filter Monthly Sales by country
* Clean up orphan product attributes
* Add installation parameter validations just in case something malicious is being passed
* Swap sprintf() to strtr() to prevent crashing with UTF-8 byte characters
* Pass given parameters as query parameters if the process method is HTTP GET
- Remove CSV as a selectable storage engine
- Remove CSS framework example file
Released Mar 11 2025
[-] LiteCart 2.6.1
Download
+ Highlight critically logged errors in Log Viewer
+ Add og:imagewidth and og:image:height
+ Add CAPTCHA when unsubscribing from newsletter
+ Also match phone number when searching for orders
+ Show elapsed script time in error log
+ Highlight and prioritize critical errors in error log viewer
* Cache variables rather than output for manufacturer links
* Cirumvent floating point precision problem for form input decimal fields
* Adjust long script execution time logging
* Adjustments for PHP 8.4 compatibility
* Adjust Featherlight gutter for mobile
* Fix settings key name causing merchant's order copy to not being sent
* Fix country reference when setting store_zone_code
* Fix postcode for Nicaragua
* Fix error reporter background job firing abnormally or not at all
* Fix similar products not displaying
* Fix update weight and dimensions when editing order items
* Fix textarea height in Edit vMod
* Fix dark mode input text color and polishing
* Fix delete translations accidentally removing too many on the page
* Fix thumbnail name when one side is omitted
* Fix settings key name causing order copies not being sent properly
* Prioritize critical errors in reports
* Update to latest font versions
* Update Twitter icon with X
* Update error handler
- Remove obsolete enable crypto causing error causing smtp to fail
- Remove stream context from http wrapper as not fully implemented
- Remove Not Found logging and reporting
- Remove site manifest to get rid of app install banner
Released Dec 2 2024
[-] LiteCart 2.6.0
* Ability to resume next on error while importing CSV
* Add domain to Sitemap cache dependency
* Add support for auto detecting csv delimiter in form input
* Adjust minimum PHP version to 5.6
* Allow access to manifest.json during Development or Maintenance Mode
* Also store firstname, lastname, hostname and user agent for requesting newsletter suscriptions during checkout
* Always initiate document system node before capturing content
* Append commit author id
* Change default MySQL host to server setting
* Convert all time zone for all timestamps
* Convert email body line endings to RFC \r\n
* Database wrapper updates
* Decode link parameters passed as string
* Default number_format to 0 decimals
* Don't return XHTML self-closing slash for nl2br
* Don't specify tax if there are no tax rates that apply
* Fix add missing entity object initiation
* Fix bug report template
* Fix chain select zone
* Fix CLI detection not reliable using php_sapi_name()
* Fix deprecated notice
* Fix display MySQL version
* Fix HTML in translation
* Fix HTML entities in error handler
* Fix issue #333
* Fix last 1000 newsletter recipients
* Fix load raw html as text
* Fix match both 250-STARTTLS and 250 STARTTLS
* Fix missing "from" in SQL statement
* Fix missing stock notice for sold out items that are orderable
* Fix og:image 1200 x 630 retina 2x
* Fix output subcategories in sitemap
* Fix phone regex
* Fix PHP 8.2 warning: imagejpeg() expects parameter 3 to be integer
* Fix PHP new intolerance for numerical strings in scale_by_width()
* Fix PHP notice in newer PHP versions for null datetime
* Fix remove order comments when deleting order
* Fix required field for campaign prices
* Fix RTL in sidebar menu
* Fix user.date_expire_sessions
* Include subtotal tax in JSON response
* Increase Not Found Log to 500 lines
* JSON Schema adjustments
* Limit to last 1000 reverse IP lookups
* Make address, city, postcode, and phone optional consistently with the create account page
* Make sure log file exists
* Move accept button to right
* Optimize all table engines
* Patch robots.txt with full URL to sitemap
* Print button to local view instead of global
* Reload page after new vMods are installed (enables the use of framework components)
* Remove self-closing slash for void elements
* Rename Copy button to Link Copy
* Revert default MySQL server to 127.0.0.1 instead of relying on php.ini mysqli.default_host
* Set https for sitemap scheme
* Show links inconveniently hidden for mobile
* Simpliy looping through language_codes and currency_codes
* Specify currency next to order total
* Update Chartist.js from 0.11 to 1.3.0
* Update Finnish standard VAT to 25.5%
* Update job module frequency setting
* Update minified versions and hashes
* Update supported PHP version
* Update wiki URL
* Upgrade jQuery 3.7.1
* Upgrade SASS library
* Use cental catalog_products_search_query() for search page
* Use file_search() instead of glob()
* Use http instead of https for XML namespaces or Google will not accept the sitemap
+ Ability to resume next during CSV import
+ Ability to retrieve tax rates via AJAX
+ Ability to set variable type when initiating entity properties
+ Ability to view log files from backend
+ Add ability to set label when drawing radio buttons and checkboxes
+ Add AVIF image support
+ Add document JSON schema to core for easier use on any page
+ Add free shipping for last destination country code XX if no previous match
+ Add missing aspect ratio 9:16
+ Add shorthand command for archiving project to zip
+ Add support for CC in order copy email
+ Add support for Lazy Loading images
+ Add support for stream socket context in http wrapper
+ Add US paper sizes
+ Alert admin user upon new ip address logging in
+ Also fetch campaign price in product query
+ CSV input field
+ Dedicate a database method for sanitizing mysql like and fulltext
+ Display quantity in the catalog tree
+ Display tab of application errors on about page
+ Group quick access header menu items
+ New database result object (Pre-release from 3.0)
+ og:image for category
+ Polyfill for Alpine
+ Quicksave button on Edit vMod page to stay on page
* Raise thumbnail quality to 80 as 65 is way too noisy
+ Set timezone when initiating database connection
+ Show categories on the start page
+ Show error log on about page
+ Show reserved quantity on edit product page
+ Track author user for all comments
+ Translation editor rewritten for support of entire collections
+ View raw content with featherlight
- Delete database table definitions
- Remove fallbacks for cheapest() shipping and payment
- Remove bad git pre-commit hook (and we no longer need it)
- Remove inner spinner for input number fields
- Remove old translations search file
- Remove print button from comment view
- Remove support for multiple page dockings and make pages docked in the menu standalone
- Remove the need for URL query parameter media=print
Released Oct 4 2024
[-] LiteCart 2.5.5
Download
+ Emulate SERVER_SOFTWARE if missing
+ Store hostname and user agent for newsletter subscriptions
+ Add Georgian URL transconversion of characters
+ Add quantity min, max, and step to CSV Import/Export
+ Add hostname and user agent to newletter subscribers
+ Add CAPTCHA and a dedicated page for newsletter subscriptions
+ Add cron job configuration helper
+ Add ability to set temp file data upon creation
+ Track time spent for rendering views
* Fix convert special characters to HTML entities
* Fix wrong constant name for table prefix
* Fix datetime filter for most shopping customers
* Adjust stock status feedback
* Use a controller and view for cookie notice
* Fix order item priority
* Fix attribute values table overlapping previous content
* Fix PHP warning by ensuring a valid webpath
* Fix number and money formatting
* Fix bad bots nonsense causing a PHP warning if the URL path contains multiple slashes
* Show CPU usage and memory usage on about page, and split logic from view
* Fix save phone
* Fix hidden currencies
* Fix setting group description
* Copy Payson to Swedish installations
* Stop refreshing cart after 60 cycles
* Fix issue resolving a backend url
- Remove auto page break every 11 rows due to complaints
- Remove unused grid set
- Remove unused tag attribute
- Remove some orphan files var/softaculous/uikit/changelog.txt 0000644 00000002401 15234570436 0013526 0 ustar 00 3.25.20 (July 14, 2026)
Fixed
Fix video links in docs
3.25.19 (June 24, 2026)
Fixed
Fix release
3.25.18 (June 24, 2026)
Fixed
Fix reactivity in Slider component
3.25.17 (May 28, 2026)
Fixed
Fix active state for Filter controls that combine filtering and sorting
Fixed
Fix Ken Burns effect not restarting in Safari in Slideshow component
3.25.16 (April 21, 2026)
Fixed
Fix negative numbers sorted incorrectly in Filter component
Fixed
Fix Modal component stealing focus from overlays rendered outside the modal
Fixed
Fix component root class not removed after disconnec
3.25.15 (April 9, 2026)
Fixed
Fix issue with build process
3.25.14 (March 27, 2026)
Fixed
Fix boundary option in Dropnav component
3.25.13 (February 23, 2026)
Fixed
Fix regression in Accordion component
3.25.12 (February 19, 2026)
Fixed
Fix accordion causes page to scroll to the top initially in Firefox
Fixed
Fix visible slides set to inert when active: first in Slider component
3.25.11 (February 12, 2026)
Changed
Clip only left and right box shadows instead of all in Slider component
Changed
Make url changeable in beforeSend in Upload component
Fixed
Fix slides retain focus when hidden in Slider component var/softaculous/zikula15/changelog.txt 0000755 00000013003 15234572725 0014054 0 ustar 00 1.5.9 (2018-12-06)
------------------
- Security fixes from Symfony:
- Disclosure of uploaded files full path (CVE-2018-19789).
- Open Redirect Vulnerability when using Security\Http (CVE-2018-19790).
- Vendor updates:
- composer/ca-bundle updated from 1.1.1 to 1.1.3
- doctrine/doctrine-cache-bundle updated from 1.3.3 to 1.3.5
- guzzlehttp/psr7 updated from 1.4.2 to 1.5.2
- jquery.mmenu updated from 7.0.6 to 7.2.2
- monolog/monolog updates from 1.23.0 to 1.24.0
- phpspec/prophecy updated from 1.7.6 to 1.8.0
- psr/log updated from 1.0.2 to 1.1.0
- ralouphie/getallheaders installed in 2.0.5
- sensio/distribution-bundle updated from 5.0.22 to 5.0.23
- sensiolabs/security-checker updated from 4.1.8 to 5.0.1
- symfony/polyfill-* updated from 1.8.0 to 1.10.0
- symfony/symfony updated from 2.8.44 to 2.8.49
- symfony/workflow updated from 3.4.14 to 3.4.20
- vakata/jstree updated from 3.3.5 to 3.3.7
1.5.8 (2018-08-05)
Zikula Core 1.5.8 is available as of today, 05 August, 2018.
Security fixes from Symfony:
Remove support for legacy and risky HTTP headers (CVE-2018-14773).
Possible host header injection when using HttpCache (CVE-2018-14774).
Deprecated:
bootstrap-plus/bootstrap-jqueryui is deprecated and will be removed in 2.1. Use jQuery UI directly.
Fixes:
Unset upgrading flag after successful upgrade (#3899).
Fixed invalid request access in hook controller.
Changed default storage engine in CLI installer to InnoDB (#3909).
Avoid linking to user registration page if registration functionality is disabled.
Use localised date format in user administration list.
Show user account menu on login page (like on registration and forgot xy pages, too).
Moved JavaScript code in several templates into footer area to ensure jQuery is available.
Added maxlength constraint to username field in registration form.
Ensure jQuery UI is loaded before bootstrap (#3912).
Suppress warning in PHP 7.2 if session is accessed before it is regenerated (e.g. during a login) (#3898, #3914).
Fixed wrong modvar reference in ZAuth validator (#3913).
Explicitly specify translation domain in pager templates (#3917).
Explicitly specify translation domain in user mail helper for calls from external modules (#3918).
Avoid information disclosure if database exceptions occur.
Fixed broken user search in Groups administration.
1.5.7 (2018-05-28)
------------------
- Vendor updates:
- gedmo/doctrine-extensions updated from 2.4.33 to 2.4.35
- guzzlehttp/guzzle updated from 6.3.2 to 6.3.3
- phpspec/prophecy updated from 1.7.5 to 1.7.6
- symfony/polyfill-* updated from 1.7.0 to 1.8.0
- symfony/symfony updated from 2.8.38 to 2.8.41
- symfony/workflow updated from 3.4.7 to 3.4.11
1.5.6 (2018-04-13)
------------------
- Fixes:
- Fixed broken fetching of sub categories using legacy category api (#3811).
- Fixed session regeneration warning with PHP 7 (#3886).
- Removed legacy code to enable `cookie_httponly` setting for cookies (#3895).
- Reduced priority of click jack protection listener to execute it later.
- Improved exception handling in legacy layer to remove errors
- Added current request to request stack in admin.php and user.php
- Vendor updates:
- composer/ca-bundle updated from 1.1.0 to 1.1.1
- doctrine/doctrine-cache-bundle updated from 1.3.2 to 1.3.3
- guzzlehttp/guzzle updated from 6.3.0 to 6.3.2
- paragonie/random_compat updated from 2.0.11 to 2.0.12
- sensiolabs/security-checker updated from 4.1.7 to 4.1.8
- symfony/symfony updated from 2.8.34 to 2.8.38
- symfony/workflow updated from 3.4.4 to 3.4.7
- twig/twig updated from 1.35.0 to 1.35.3
1.5.5 (2018-02-24)
BC Breaks:
Removed matthiasnoback/symfony-service-definition-validator (#3885).
Deprecated:
\Zikula\Core\AbstractBundle::getBasePath() is deprecated (#3862).
Fixes:
Fixed wrong request service call in GroupsModule menu (#3874).
Fixed fetching module url from metadata when untranslated (#3876).
Activated translatable fallback for proper handling of content with missing translations.
Added fallback for missing user real names.
Avoid exposure of server pathes in JS assets merger (#3883, #3890).
Fixed missing routes table in CLI upgrade from 1.3.x (#3887, #3888).
Added hints about minimum password length (#3884, #3891).
Fixed broken password strength meter usage in ZAuth administration (#3891).
Vendor updates:
composer/installers updated from 1.4.0 to 1.5.0
doctrine/orm updated from 2.5.13 to 2.5.14
gedmo/doctrine-extensions updated from 2.4.31 to 2.4.33
jquery.mmenu updated from 6.1.8 to 7.0.3
phpspec/prophecy updated from 1.7.3 to 1.7.5
sensio/framework-extra-bundle updated from 3.0.28 to 3.0.29
sensiolabs/security-checker updated from 4.1.6 to 4.1.7
swiftmailer/swiftmailer updated from v5.4.8 to v5.4.9
symfony/polyfill-* updated from 1.6.0 to 1.7.0
symfony/security-acl updated from 3.0.0 to 3.0.1
symfony/symfony updated from 2.8.32 to 2.8.34
symfony/workflow updated from 3.4.1 to 3.4.4
vakata/jstree updated from 3.3.4 to 3.3.5
webmozart/assert updated from 1.2.0 to 1.3.0
willdurand/js-translation-bundle updated from 2.6.5 to 2.6.6
zikula/andreas08-theme updated from 2.0.1 to 2.0.3 var/softaculous/litforum/changelog.txt 0000644 00000014711 15234573062 0014247 0 ustar 00 20260208.1 (2026-02-08)
-----------------------
- change: upgrade Smarty from version 3.x to 5.7.0
- change: further changes in the default theme regarding the styling and forgotten standardisation steps for a few forms
- fix: replace calls of $_SERVER['PHP_SELF'] with $_SERVER['SCRIPT_NAME'], $_SERVER['PHP_SELF'] contains also URL parameters, $_SERVER['SCRIPT_NAME'] does not
- fix: security issue with the upload of images, that was able to accept malicious content
- fix: ensure the request method to be GET or POST, where necessary; some e-mail providers are checking links in e-mails for calling malicious content with other methods, which breaks the function of some of the links in the e-mails, generated by the forum software
- fix: move to page one of the overview pages when switching over from normal threads to threads with spam postings or vice versa; before this fix one could get lost on a page without any content
- fix: add the attribute reffererpolicy to the generated iframe for Youtube videos to prevent Youtube error 153
- fix: several places in the PHP code that caused deprecation messages
20251129.1 (2025-11-29)
-----------------------
- featurette: link to instantaneously reload the version information for PHP, the database server and its product name, attention: there is a delay of 10 seconds after the latest reload
- featurette: make the size of the icons following the font size, until then they only scaled when zooming the site
- change: the default font size of the main content of the forum pages is now 1rem
- change: removed many font size and line height definitions which are obsolete with the change to the default font size of 1rem
- change: put (more or less) all occurences of radio buttons and checkboxes into lists
- change: use more modern techniques for making the left column of settings tables lookong different than the other column(s) and table rows of other tables striped, this makes the use of classes .a, .b, .c and .d in each row or column obsolete
- change: optimise the code to generate and set the sorting icons in the heading cells of the user data listing tables
- change: use the narrow non breaking space for the (R) marker for registered users
- change: remove the ability to sort the users data listing table (not the one on the admin panel!) by e-mail-addresses because the addresses are invisible for the visitor
- fix: use classic formatting of the ISO-timestamps with the PHP function date, with INTL-date-formatter the ISO date will falsely be localised
- fix: remove outdated JS-code to include images which are already gone
- fix: make the function links in user data, categories, smilies, pages and bookmark tables appearing in one line and not breaking into a second line
- cleanup: remove CSS code for elements which does no more exist since a long time
- cleanup: summarise the repeated definitions for similar elements where possible
20251021.1 (2025-10-21)
-----------------------
- fix: sanitise numeric input with PHP function intval in preparation of saving it to the database to prevent a possible SQL-injection, reported by Github user @XY20130630 (CVE-2025-62606)
20251010.1 (2025-10-10)
-----------------------
- feature: show the version numbers of PHP and the database server as well as the product name of the database server in the version info box in the admin panel
- featurette: show the information about a new release if the version number is newer than the installed version; show the link to the latest release in the case that the script was not able to read the version data of the latest release from Github.
- fix: correct the BB-code [media] and [flash] rendering, it didn't work if the forum setting autolink was enabled
- fix: rendering of old entries with BB-code [flash], regular expression didn't match links to Youtube
- fix: remove the turkish transalation in its current state; when setting the turkish language the forum breaks and is not accessible anymore
20250921.1 (2025-09-21)
-----------------------
- feature: BB-code for video and audio media (supports native HTML elements audio and video and YouTube content in iframes, old media which BB-code flash is supported again (read only))
- feature: almost all pixel images of the default theme are now replaced with natively scalable SVG images
- feature: add a message bar on all pages for the case, that the forum is disabled; for logged in administrators the forum is accessible and looks enabled so they may overlook the actual status of the forum
- feature: replace the JS-based popover code for images which are displayed with their thumbnails in postings with the native HTML popover which are still generated with JavaScript, without working JavaScript the thumbnails still link to the image itself
- feature: add the infrastructure to separate the lists for files to upload and files to delete in the upgrade process; this will work only with future versions, not for the current upgrade!
- featurette: add a pagination bar at the top of the search results list if this is necessary
- featurette: combine the links to block and lock a thread, was two permanently displayed links before
- featurette: introduce a SVG favicon and larger favicons in PNG format
- fix: initialise the variable $last_posting in includes/user.inc.php as array and not with NULL
- fix: several styling issues (dedoupling HTML- and CSS-code, removing unused HTML- and CSS-code, simplifying HTML- and CSS-code)
20250422.1 (2025-04-22)
-----------------------
- fix: when introducing the new feature of adding entries for existing but unmanaged uploads we changed a column name but forgot to change in in the upload processing script, corrected the column name
- fix: when introducing the new feature of adding entries for existing but unmanaged uploads we changed the column definition for the uploaders ID to store only NULL or IDs of existing users, this did not take into account entries from users that have since been deleted, check for such entries and set the uploaders ID to NULL before changing the column definition
- fix: when adding the attribute UNSIGNED to several index columns we forgot to define AUTO_INCREMENT for column mlf2_tags.id, this caused hiding of completely new tags behind an invalid index
- fix: remove a superfluous comma in a postings metadata in the template themes/default/subtemplates/entry.inc.tpl
- change: rework a few forms for providing the admins password and for creating new categories in the admin area
- change: replace all PNG- and GIF-icons, which are in use in the admin area, with SVG icons var/softaculous/elgg33/changelog.txt 0000755 00000001110 15234575707 0013472 0 ustar 00 3.3.25 (2022-10-07)
Contributors
Jerôme Bakker (2)
3.3.24 (2021-12-23)
Contributors
Jerôme Bakker (1)
Bug Fixes
reported_content: sanitize report URLs (c30b17bf)
3.3.23 (2021-12-03)
Contributors
Jerôme Bakker (1)
Bug Fixes
ajax: forms in the admin namespace are protected (572d210e)
3.3.22 (2021-11-19)
Contributors
Jerôme Bakker (3)
Bug Fixes
groups: prevent misuse of group membership actions (d9fcad76)
3.3.21 (2021-08-03)
Contributors
Jeroen Dalsem (1)
Bug Fixes
http: always disable cache if cookie is being set (30c17f06) var/softaculous/forma/changelog.txt 0000644 00000025157 15234602105 0013507 0 ustar 00 forma.lms 4.0.19
---------------------------------------------------------------------------------------
Release date: 2025 July
- # - fix check if set HTTP_X_FORWARDED_FOR before use
- # - add div and css class to course-box__title for course name into course box
- # - fix course block rendering if "use_course_label" is on
- # - fix download if file not exists
- # - Upgrade legacy to version 3.3.26 + SQL_MODE from NO_AUTO_CREATE_USER to NO_ENGINE_SUBSTITUTION
- # - Fix Test with feedback: error 500
- # - Include column filters in search query during global search.
- # - Prevent column search event during global search.
- # - added search timeout and enabled search on submit button
- # - fix column in import subscription
- # - update german translate
- # - fix exception in HomepageAdmController.php
- # - fix base url management in Get::site_url function
- # - fix base url management in getCurrentDomain function
- # - fix catalogue subscription email
- # - fix and refactor course userCanUnsubscribe function
- # - fix dashboard block calendar
- # - fix group query
- # - fix exception BaseCache::__wakeup()
- # - add lang cache to config
- # - fix lang translate month
- # - fix CourseLms
- # - implement API for multiple users
- # - improve course date begin and date end management
- # - fix date translate
- # - add clear lang cache
- # - fix lang load when new lang is installed
- # - Implement Abstract BaseCache to extends cache for generic use
- # - complete lang cache implementation
- # - wip implementation
- # - Fix dashboard exception
- # - add show_custom_fields to usersList API to return custom fields data in users list
- # - fix in API userDetails to show custom fields that user cannot view.
- # - add getCategories API
- # - Change SQL_MODE from NO_AUTO_CREATE_USER to NO_ENGINE_SUBSTITUTION for mysql 8.0 compatibility
- # - fix field_access_list in lib.user_profile
- # - Add event "core.users.changestatus" in suspend/unsuspend user/users
- # - Fix myMetaCertificate function that does not return correct rows when i've two meta certificate that use the same idCertificate
- # - preg_match does not fall in catch branch in case of time format different from PT time; managed with if instruction.
- # - fix DbConn::getInstance to solve automatically the connection and not using external connection link
- # - Implement db factory interface
- # - activate Plugin namespace
- # - fix coursereport
- # - replace old require with forma::include
- # - fix getDateSubscribed to get correct user for teacher
- # - fix(dateTimeLocal): empty values
- # - Fix actual space in CourseLmsController
- # - fix(bonusScore): put all statuses in scores query
- # - fix access to courses and lo objs
- # - fix data_end in courseAlms
- # - fix session save on org chart
- # - fix migration namespace
- # - fix api getAnswerQuest
- # - fix gift import order
- # - fix create course date_begin, date_end to set NULL when parameters are blank
- # - fix create and update course hour_begin, hour_end when parameters are blank
- # - add Migration to update wrong hour_begin, hour_end setted to ':'
- # - replace migration to update single column
- # - fix classroom update on API
- # - fix accessSelection in UserselectorAdmController
- # - fix update classroom to manage textfield update
- # - fix location api
- # - fix dashboard block
- # - fix error in dashboard when permissions are not set.
- # - fix day custom field api
- # - fix duplicate answer in class choices
- # - fix api getAnswerTest to get one only couple idAnswer , idQuest
- # - fix(catalogue): complete access for superadmin in any condition
- # - chore(admins): delete from admin tree reference if admin changed level or is deleted
- # - fix send mail to moderators during import into course
- # - fix waiting approval entering courses
- # - fix can enter course in catalogue by date interval
forma.lms 4.0.11
---------------------------------------------------------------------------------------
Release date: 2024 October
- # - add translate and fix keys form cron.report
- # - fix absolute path calculate
- # - fix right join coursereports for not test items
- # - fix insertparams
- # - fix unjoinead course reports on learning course reports
- # - update certificate generation
- # - update composer packages
- # - fix clean selection from empy values in userselector
- # - fixed mail sender
- # - fix org nodelist dropdown query
- # - fix null values in courselist
- # - fix getAllselection from UserDataSelector.php
- # - fix admin courselist data
- # - fix api
- # - mycourses - filter closed couse in "all course" mycourses
- # - fix sequence questions test on delete
- # - fix exception stats when user is tutor - fix division by zero when turo does not have any student
- # - fix get pdf constructor
- # - fix api authentication not neded for explicit route
- # - Fix autoplay object
- # - fix Man_course in certificate.php
forma.lms 3.3.25
---------------------------------------------------------------------------------------
Release date: 2024 october
- # - Update changelog
- # - fix query and update lms.sql
- # - Update version to 3.3.25
- # - fix api authentication not neded for explicit route
- # - fix org chart report
- # - Update 30323_db.sql
- # - Fix dashboard courses margin/padding
- # - Validate start/time and interval hours
- # - Validate if pause time is between start/end hour
- # - Proper fix for wrong date
- # - Fix date add and use YUI2 dialog
- # - Fix translation and button alignment on classroom dates
- # - Make course image and title clickable
- # - Order course categories dropdown by name
- # - Make label for checkbox and radio clickable
- # - Add toggle support for "I accept the privacy terms"
- # - Fix userid error message on 'use_email_as_userid'
- # - Padding alignment of "I accept the privacy terms" and toggle on click
- # - Align "I accept the privacy terms" text on registration page
- # - Add form dirty support for course edition edit
- # - Add title property for PDFObject embed
- # - Add form dirty check for course add
- # - Limit scope of form dirty on settings page only
- # - Update translations
- # - Fix buttons alignment on plugin manager
- # - Add support for form dirty on plugin settings
- # - Add "form dirty" check for settings/plugin settings
- # - Fixes warnings during "npm install"
- # - Fix warning about node-sass duplicate on package.json
- # - Fix MySQL_VERS translation variable on settings
- # - Revert "Fix MySQL_VERS translation variable on settings"
- # - Fix MySQL_VERS translation variable on settings
- # - Back to previous tab when Cleaning Twig Cache
- # - Add title to icon sprites on Translation page
- # - Add option "Use email as userid"
- # - Add margin-top to "Back to login" link on Register page
- # - Always show scrollbar on privacy terms
- # - Generate certificate on download (optimize logic)
- # - Use real mimetype instead of pseudo one
- # - Translate error message (download file not exists)
- # - Translate "You don't have permissions" message
- # - Embed PDFs instead of downloading them
- # - Upgrade node-sass for TinyMCE5
- # - Generate certificate on download
- # - Update lang[english].xml
- # - Update lang[portuguese].xml
- # - Translate certificate release columns and error message
- # - Force regenerate certificate
- # - Translate "Error generating certificate: " error message
- # - Revert "Translate "Error generating certificate" error message"
- # - Translate "Error generating certificate" error message
- # - Normalize UTF-8 strings on certificates
- # - Enable border on tables
- # - Fix translation of "Certificate" batch generation
- # - Update lang[portuguese].xml
- # - Fix language editing click
- # - Fix attendance date and dialog images
- # - Upgrade to 3.3.25
- # - Update 30323_db.sql
- # - Update Get.php
- # - Update Portuguese translation
- # - Update Portuguese translation
- # - Update English translation
- # - Update Portuguese translation
- # - Update translation of "Last access" header
- # - Update Portuguese translation
- # - Update Reservation "Category" menu to plural
- # - Replace legacy PNG icon by sprite on course editions
- # - Update Portuguese translation
- # - Update English translation
- # - Fix PHP warning error during phase 5 of FormaLMS installation
- # - Allows the SQL upgrade script to run multiple times
- # - Convert URLManager getInstance() to static
- # - Revert "Convert URLManager getInstance() to static"
- # - Convert URLManager getInstance() to static
- # - Fix PHP Warnings on Get.php
- # - Update Installation translation for Portuguese
- # - Handle special chars on translation
- # - Fix PHP Warnings during FormaLMS upgrade
- # - Convert Learning_Cart to static
- # - Standardize "Language" title on Language management page
- # - Allows to use Ctrl + A to select all text from translation field and als…
- # - Revert "Allows to use Ctrl + A to select all text from translation field and also do not save it's state"
- # - Allows to use Ctrl + A to select all text from translation field and also do not save it's state
- # - Translation fixes
- # - fix api authentication not neded for explicit route
- # - fix org chart report
- # - upgrade version
forma.lms 3.3.24
---------------------------------------------------------------------------------------
Release date: 2024 july
- # - fix coursereport
- # - fix warning in coursereport
- # - Coursereport improve performance
- # - Fix select data order by translation
- # - remove auth
- # - fix get-idstudent not only studentscd
- # - fix coursereport gradebook views
- # - fix not-checked test showing in coursereport
- # - fix subscribe include
- # - fix coursereport
- # - fix upgrader
- # - fix certificate and test data
- # - fix test track score load
- # - fix generate token in API lib
- # - fix import from file csv and replace while instead foreach
- # - fix edit classroom in showclassroom file
- # - fix tracking object var/softaculous/dolibarr/changelog.txt 0000644 00000013767 15234602150 0014205 0 ustar 00 ***** ChangeLog for 23.0.3 compared to 23.0.2 *****
FIX: #36589 (#38037)
FIX: #37552 (#38073)
FIX: #37649 (#38101)
FIX: #37759
FIX: #37760
FIX: #37761
FIX: #37762
FIX: #37805
FIX: #38074 (#38075)
FIX: #38131 (#38140)
FIX: Accountancy - Select journal - Problem with the label (#37979)
FIX: AccountingAccount cache — silent reference mutation in accounting journals (#37981)
FIX: a param must not come from end user entry.
FIX: api create invoice. Do not allow a user limited as sale
FIX: avoid error when deleting a category (#37864)
FIX: avoid error with postgresql (#37865)
FIX: avoid Table 'llx_categorie_project_task' doesn't exist (#37861)
FIX: broken feature with api auth and Multicompany transverse mode (#37868)
FIX: do not print Extrafields in PDF if printable is 0 (#37789)
FIX: draft invoice paid when add absolute discount == remain to pay (#38104)
FIX: extrafield selectlist when there is a linked table (#37706)
FIX: Limit standard on price list (#37944)
FIX: missing "blob:" in the assistant for CSP editor.
FIX: option MEMBER_SEARCH_MEMBER_PUBLIC_FORM_CREATE
FIX: product price.php: preserve default_vat_code and tva_npr when auto-creating initial product_price row (#38034)
FIX: propagate fk_warehouse from BOM/MO to production lines in createProduction() and processBOM() (#38147)
FIX: selected default value ko on select_produits_fournisseurs_list()
FIX: Set default warehouse on order create. (#37815)
FIX: Site root missing in $backtopage. (#37804)
FIX: use company default RIB when it is defined (#38016)
FIX: wrong "REFERENCES" for foreign key of fk_project_task (report this fix in 23 to 24) (#37874)
FIX: IDOR on messaging.php - Credit Aksoum Abderrahmane
FIX: Some remaining cross-customer object creation on API (proposal, orders) - Credit Mitch311
FIX: add permission test on legacy filemanager - Credit Aksoum Abderrahmane
FIX: Can use AI module to make SSRF call. Credit Dilip
FIX: #GHSA-crgg-h74r-2m8r (#37636)
FIX: #GHSA-hq5j-39f9-qxcv (#37812)
FIX: SQL Injection via Operator Injection in Contract Service List
SEC: Better sanitization param for GETPOST of htmlheader of website page - See commit bbbbb56c6455514dcd0acca53afc17a92ed21bb9
***** ChangeLog for 23.0.2 compared to 23.0.1 *****
FIX: #37412 Better fix
FIX: #37461 #37511 Accountancy - Bank journal - Problem of cache (#37603)
FIX: #37482
FIX: #37551 Accounting - Use better rights on create / export entry (#37555)
FIX: #37707
FIX: #37707 Can pay supplier invoices with the same parent company
FIX: Accountancy - Need more information about mandatory step in various journal (#37573)
FIX: - Added user filtering for displaying leave in the calendar (#37385)
FIX: Add http code 503 on deadlock
FIX: Allow to include spaces in email filename (#37539)
FIX: API Warehouse : Error 401 when getting warehouse by id (backport from 22)
FIX: Backport/23 fix amount main currency (#37530)
FIX: bad tab underlined in display setup (#37489)
FIX: Bad value when entering price with multicurrency included tax.
FIX: Better compatibility for module using condition object-> in tabs
FIX: Closing td and showing options
FIX: contrat update alias for postgres (#37524)
FIX: CSS
FIX: extrafield on pdf must not appears on doc if option off
FIX: fatal error to create when no language set
FIX: Fetch of lead status
FIX: Fix doc preview in comm card
FIX: Fix mandatory custom fields JS validation in printCommonFooter (#37469)
FIX: Fix not manage deposit account when get accounting code to bind when you have not selected a default account for deposit (#37680)
FIX: Fix the default filter dates (#37579)
FIX: #GHSA-39vm-9q4p-6jjg - force disabling module possible on demo only (#37629)
FIX: #GHSA-7hqv-pvw6-cw54
FIX: #GHSA-8qh8-6h88-q46p
FIX: #GHSA-crgg-h74r-2m8r (#37637)
FIX: #GHSA-hh5p-m24x-fwx2 block ssrf when using webhooks (#37630)
FIX: #GHSA-hq5j-39f9-qxcv
FIX: #GHSA-ph29-326p-chw4 - disable+sanitize deprecated load/save files
FIX: #GHSA-prg3-w5r4-h7g3
FIX: #GHSA-qjj8-wpvx-p54j - test on hierarchy not done on some api
FIX: #GHSA-v5fq-cf5m-vwv7 - Credit Grzegorz Tworek, Sec4check (#37632)
FIX: height of confirm popup
FIX: intervention API update line (#37607)
FIX: Logic in isEditable(). Must not be exactly like in isErasable().
FIX: Missing field in fetch
FIX: option MAIN_USE_TITLE_FOR_USER was on update and not on create
FIX: Order API: delete order returns wrong http response in case order could not be deleted (#37472)
FIX: Pb with import of agendaevents. Date and import id not visible.
FIX: product ref was not printed on supplier recurring invoice (#37535)
FIX: read_supplier_price filter for stock complement (#37417)
FIX: Reload page after check holiday for save param (#37410)
FIX: restore use of user->id in dynamics conditions
FIX: Several trouble with demo docker packages. More secured way to use
FIX: Show correct shippable icon if order has multiple lines with same product (#37656)
FIX: show export full documents checkbox on change format in accountancy export (#37468)
FIX: translation on multiselect with rich label - Fix CSS public ticket
FIX: update COPYRIGHT file to reflect removed libraries
***** ChangeLog for 23.0.1 compared to 23.0.0 *****
FIX: Removed SQL error on install process.
FIX: #37412 Better fix
FIX: Added user filtering for displaying leave in the calendar (#37385)
FIX: Bad value when entering price with multicurrency included tax.
FIX: Better compatibility for module using condition object-> in tabs
FIX: CSS
FIX: Fetch of lead status
FIX: Fix doc preview in comm card
FIX: height of confirm popup
FIX: option MAIN_USE_TITLE_FOR_USER was on update and not on create
FIX: Order API: delete order returns wrong http response in case order could not be deleted (#37472)
FIX: Pb with import of agendaevents. Date and import id not visible.
FIX: read_supplier_price filter for stock complement (#37417)
FIX: Reload page after check holiday for save param (#37410)
FIX: Several trouble with demo docker packages. More secured way to use install.force.php file
FIX: translation on multiselect with rich label - Fix CSS public ticket
FIX: update COPYRIGHT file to reflect removed libraries in v23.0.0 var/softaculous/orange/changelog.txt 0000644 00000003335 15234602203 0013647 0 ustar 00 New & Changed Features for OrangeHRM ver 5.9
New Features/Changes
-----------
- Workspace Notifications
- Allowing OrangeHRM Starter users to receive OrangeHRM notifications in Slack and Google Chat workspaces
- Supported Environments
- PHP - 7.4 to 8.5
- MariaDB - 5.5 to 12.0
- MySQL - 5.5 to 9.4
Bug Fixes
---------
- Security improvements
New & Changed Features for OrangeHRM ver 5.8.1
Supported Environments
-----------
- PHP - 7.4 to 8.4
- MariaDB - 5.5 to 12.0
- MySQL - 5.5 to 9.4
Bug Fixes
---------
- Security improvements
New & Changed Features for OrangeHRM ver 5.8
New Features/Changes
-----------
- Supported Environments
- PHP - 7.4 to 8.4
- MariaDB - 5.5 to 12.0
- MySQL - 5.5 to 9.4
Bug Fixes
---------
- Security improvements
New & Changed Features for OrangeHRM ver 5.7
New Features/Changes
-----------
- Language Package Import
- Allowing OrangeHRM Starter users to import translations via XLIFF files
- Supported Environments
- PHP - 7.4 to 8.3
- MariaDB - 5.5 to 11.4
- MySQL - 5.5 to 8.4
Bug Fixes
---------
- Several API defects fixed
- https://github.com/orangehrm/orangehrm/issues/1853 (installation failure on MySQL 8.4)
Changed Features for OrangeHRM ver 5.6.1
Changes
-----------
- Security
- Update BE and FE libraries to latest minor versions
- Sanitize SVG uploads in Corporate Branding
- Password strength validation in CLI installer
- Update Docker PHP image
- Supported Environments
- PHP - 7.4 to 8.3
- MariaDB - 5.5 to 11.3
- MySQL - 5.5 to 8.3 var/softaculous/kanboard/changelog.txt 0000644 00000035012 15234613656 0014170 0 ustar 00 Version 1.2.53 (July 24, 2026)
------------------------------
* fix(user): scope remember me session removal to its owner
* fix(task): validate dst_project_id in task duplication form
* fix(security): scope restriction removal to authorized project
* fix(security): escape comment reply text in template textarea
* fix(search): save task search preference as metadata
* fix(search): persist task search preference from form
* fix(markdown): stop consuming text after a "#id" task link at line start
* fix(locale): Update incorrect character in zh_TW locale
* fix(date): correct age helper "<30m" threshold to 30 minutes
* fix(board): verify task belongs to project before moving
* fix(board): escape project name in task links tooltip
* fix: validate user_id in subtask time tracking write methods
* fix: Updated Project View to suppress warnings related to hook call
* fix: escape notification title in web notification template
* fix: CSS visibilty value was incorrect
* fix: Adjusted tooltip max height and position
* feat(search): scope all-field search preference per user
* feat(search): add configurable all-field task search
* ci(dependabot): group updates and reduce check frequency
* ci: pin GitHub Actions to commit SHA
* ci: add workflow to close stale pull requests
* chore(assets): upgrade select2 to 4.0.13
* chore(tests): bump phpunit to 12.5.23 and remove stray parsedown composer.json
* chore(deps): update GitHub Actions dependencies
Version 1.2.52 (April 4, 2026)
------------------------------
* fix: revoke public tokens for inactive users
* fix: use timing-safe comparison for token validation
* fix: validate task ownership before applying property changes
* fix: enforce visibility controls for public and unprivileged access
* fix: use parameterized queries in task finder and iCal
Version 1.2.51 (March 7, 2026)
------------------------------
* test: upgrade to phpunit 12
* fix(css): Fix accessibility issue of insufficient text to background contrast
* fix: validate user external ID column
* fix: restrict invite signup input to expected fields only
* fix: prevent unsafe deserialization in database session handler (CWE-502)
* fix: check file attachment ownership before deletion
* fix: add permission checks in API procedures
* fix: add followRedirects parameter to HTTP client methods to prevent SSRF bypasses
* feat: add SSRF protection for webhook notifications
* build(deps): bump pimple/pimple from 3.6.1 to 3.6.2
* build(deps): bump docker/setup-qemu-action from 3 to 4
* build(deps): bump docker/setup-buildx-action from 3 to 4
* build(deps): bump docker/metadata-action from 5 to 6
* build(deps): bump docker/login-action from 3 to 4
* build(deps): bump docker/build-push-action from 6 to 7
* build(deps): bump actions/upload-artifact from 6 to 7
Version 1.2.50 (February 7, 2026)
---------------------------------
* test: bump phpunit version
* fix: add missing authorization checks
* fix: enforce plugin installer check in PluginController actions
* fix: enable Parsedown safe mode for Markdown rendering
* fix: add missing project authorization checks in controllers
* fix: add CSRF protection for project role changes and enforce JSON content type
* chore: use php-cs-fixer docker image in GitHub workflow instead of Composer
* build(deps): bump pimple/pimple from 3.5.0 to 3.6.1
Version 1.2.49 (January 6, 2026)
--------------------------------
* fix(ldap): ensure LDAP placeholders are escaped
* fix: restore Ctrl+Enter submission on the task creation form
* feat(locale): update translations
* feat: prevent protocol-relative URL redirects after login
* feat: block private network access for external web link (configurable)
* feat: add `TRUSTED_PROXY_NETWORKS` config option
* ci: add workflow to mirror GitHub repo to Codeberg
* chore: remove outdated `tests/Dockerfile`
* chore: regenerate autoload Composer files
* build(deps): bump alpine from 3.22 to 3.23
* build(deps): bump actions/upload-artifact from 4 to 6
* build(deps): bump actions/checkout from 5 to 6
Version 1.2.48 (October 18, 2025)
---------------------------------
* fix: handle Windows-style paths in `sanitize_path` function
* feat(locale): added missing German translation phrases
* feat(locale): added Arabic translation
* feat(api): add board, rss and ical public links to the API response
* feat: display sub-tasks completion in numbers (x/y) alongside percentage
* feat: add basic support for right-to-left (RTL) languages
* chore: update .gitattributes to ignore additional configuration files
* build(deps): bump actions/setup-python from 5 to 6
* build(deps): bump actions/checkout from 4 to 5
Version 1.2.47 (August 11, 2025)
--------------------------------
* refactor: add namespace to test files
* fix: the `$escape` parameter must be provided in PHP 8.4 for CSV functions
* fix: sanitize and validate uploaded files path
* fix: do not load `RememberMeAuth` provider when `REMEMBER_ME_AUTH` is `false`
* fix: avoid PHP warning when external user creation is disabled
* feat!: remove file cache driver to avoid using `unserialize()`
* feat!: ignore legacy events serialized with PHP due to potential security issues
* feat: add new actions: `TaskAssignCurrentUserColumnIfNoUserAlreadySet` and `TaskAssignToUserOnCreationInColumn`
* feat: Add new `pdf()` method in `Core\Http\Response`
* ci: run `php-cs-fixer` on GitHub Actions
* ci: remove unnecessary labels from issue templates
* chore: replace deprecated `gh-cli` feature source in devcontainer configuration
Version 1.2.46 (June 22, 2025)
------------------------------
* refactor: update return type in filter apply methods
* fix(security): prevent potential `Host` header injection via `SERVER_NAME`
- You must specify the Kanboard application URL explicitly to generate correct URLs from email notifications. The default is `http://localhost/`.
* fix: make various PHP 8.x compatibility changes
* fix: avoid `Implicitly nullable parameter declarations` errors in PHP 8.4
* feat: validate plugin archive URL before downloading
* feat: use PHP 8.4 in the official Docker image
* feat: show CAPTCHA on login form regardless of user existence
* feat: add new option to enable notifications by default for new users
* feat: add healthcheck endpoint `healthcheck.php`, and new Docker Compose files for MariaDB, Postgres, and SQLite
* feat: add `TRUSTED_PROXY_HEADERS` config option
- If you use a reverse proxy, you can now specify which headers to trust for the client IP address. Nothing is trusted by default.
* docs: add `CONTRIBUTING.md` file
* ci(docker): avoid using `set-output` deprecated command
* chore!: PHP 8.1 is now the minimum version supported
- **!! PHP 7.4 is no longer supported !!**
* chore: update `docker-compose.yml` sample file to the latest specs
* chore: remove obsolete `Vagrantfile`
* build(deps): bump Alpine Docker image from 3.21 to 3.22
Version 1.2.45 (May 12, 2025)
-----------------------------
* refactor: reuse existing helpers in tasks import form
* fix(filter): handle `null` input in the `Lexer` class
* fix(docker): legacy key/value format with whitespace separator should not be used
* fix(api): allow and validate creator ID assignment in task creation
* feat(routes): add `view` routes for project and task file browsing
* feat(locale): update all language files using machine translation
* feat(api): add priority fields to `createProject` and `updateProject` procedures
* feat: allow attaching screenshots and files when creating a task
* feat: add task title to overdue notification title
* ci: replace GitHub Issue Markdown templates with YAML forms
* ci: remove broken SQL Server unit tests pipeline
* ci: improve pull request template
* ci: add commit linter to validate conventional commit messages in pull requests
Version 1.2.44 (March 21, 2025)
-------------------------------
* fix: prevent internal task titles from wrapping under the dropdown menu icon
* feat(locale): update Greek and French translations
* feat: display tag color squares next to their names in project and global settings
* feat: enable bulk addition/removal of internal links
* feat: provide an option to add tags without replacing existing ones during bulk operations
Version 1.2.43 (December 18, 2024)
----------------------------------
* fix: verify the session hasn't expired before returning data
* fix: avoid PHP 8.4 deprecation notices in third-party libraries
* fix: avoid Composer warnings regarding PSR compatibility
* feat(locale): add missing Brazilian Portuguese translations
* ci: run GitHub Actions tests with `ubuntu-24.04`
* chore: don't `export-ignore` the ChangeLog
* build(deps): bump `symfony/service-contracts` from `2.5.3` to `2.5.4`
* build(deps): bump `symfony/event-dispatcher-contracts` from `2.5.3` to `2.5.4`
* build(deps): bump `symfony/deprecation-contracts` from `2.5.3` to `2.5.4`
* build(deps): bump `alpine` from `3.20` to `3.21`
Version 1.2.42 (November 10, 2024)
----------------------------------
* fix: validate translation filename before loading locales
* fix: avoid path traversal in `FileStorage`
* feat: add Peruvian Sol to the list of currencies
* build(deps): bump `symfony/finder` from `5.4.43` to `5.4.45`
* build(deps-dev): bump `symfony/stopwatch` from `5.4.40` to `5.4.45`
Version 1.2.41 (October 25, 2024)
---------------------------------
* feat: add new plugin hooks in project forms
* feat: add option to add BOM at the beginning of CSV files (required for Microsoft Excel)
* feat: validate app config form values
* feat: add cancel button on 2FA code validation screen
* fix: add CSRF check to the logout endpoint
* fix: add HTML escaping when displaying exception message
* fix: add URL validation for external task links
* fix: correct broken migration logic for Sqlite
Version 1.2.40 (September 25, 2024)
-----------------------------------
* build(deps): bump symfony/finder from 5.4.42 to 5.4.43
* chore: add php83-xmlwriter package to the Docker image
* ci: update GitHub pull-request template
* fix: avoid PHP error if no subtask in progress is found
* fix: avoid potential XSS and HTML injection in comment replies
* fix: prevent duplicated columns when enabling per-swimlane column task limits
* fix(api): check comment visibility in API procedures
* fix(api): verify comment ownership in API procedures
* fix(mssql): escape identifiers in timesheet queries
* fix(mssql): use ANSI OFFSET/FETCH syntax for pagination queries
* fix(test): use explicit ORDER BY for queries returning multiple rows
* test: add unit tests for Subtask Time Tracking query methods
* test: ensure pagination produces correct chunks
Version 1.2.39 (August 18, 2024)
--------------------------------
* fix: remove CSS which caused responsive issues on mobile
* fix: incorrect template condition that set the username field to read only for remote users
* fix: tasks count across swimlanes was incorrect
* fix: avoid warning from libpng when loading PNG image with incorrect iCCP profiles
* feat: improve column header task counts
* feat: add `apple-mobile-web-app-capable` meta tag
* build(deps): bump `symfony/finder` from `5.4.40` to `5.4.42`
Version 1.2.38 (July 20, 2024)
------------------------------
* fix: avoid browser caching issue when showing file attachments
* fix: comments visibility was not taken into consideration on event activities page
* fix: send comment via email was broken due to missing comment visibility logic implemented in v1.2.36
* feat(locale): update Greek translations
* feat(locale): update Italian translations
* build(deps): bump `symfony/console` from `5.4.40` to `5.4.41`
* build(deps): bump `docker/build-push-action` from `5` to `6`
Version 1.2.37 (June 5, 2024)
-----------------------------
* Add CSRF check and remove `project_id` form value for `addUser` and `addGroup` actions ([CVE-2024-36399](https://github.com/kanboard/kanboard/security/advisories/GHSA-x8v7-3ghx-65cv))
* Update `symfony/*` dependencies
* Update Docker image to Alpine 3.20
* Update Russian and Hungarian translation
* Add `color_id` argument to `createCategory` and `updateCategory` API procedures
* Add link to create a comment before the list
* Fix: unable to create comments with "c" shortcut or "Add a comment" menu
Version 1.2.36 (May 2, 2024)
----------------------------
* Add comments visibility
* Add explicit int casting to avoid PHP 8 TypeError when having empty automatic action parameters
* Add new config option `DASHBOARD_MAX_PROJECTS`
* Add reply feature to comments
* Fix search bar layout when adding more buttons via third-party plugins
* Introduce a Git hook to automatically update `version.txt` during Git checkout
* Performance improvements:
* Don't count closed tasks when rendering the board
* Force the use of the cache when there is no custom roles
* Use unique plugin name instead of plugin title for plugin registry logic
* Update dependencies
Version 1.2.35 (February 2, 2024)
---------------------------------
* Add missing HTML escaping when showing group membership in user profile ([CVE-2024-22720](https://github.com/kanboard/kanboard/security/advisories/GHSA-8p3h-v7fc-xppj))
* Update Dutch translation
* Update Bulgarian translation
* Bump `phpunit/phpunit` from `9.6.15` to `9.6.16`
* Bump `symfony/console` from `5.4.32` to `5.4.34`
Version 1.2.34 (December 13, 2023)
----------------------------------
* Upgrade Docker image to Alpine 3.19 and PHP 8.3
* API: Avoid PHP notice when searching for a project name that does not exist
* Update Bulgarian translation
* Bump `symfony/console` from `5.4.28` to `5.4.32`
* Bump `phpunit/phpunit` from `9.6.13` to `9.6.15`
Version 1.2.33 (October 15, 2023)
---------------------------------
* Do not close modals when clicking on the background
* Add Bulgarian translation
* Update Ukrainian and Russian translations
* Show the two factor form in the middle of the screen like the login form does
* Do not override the `creator_id` with the current logged user if the task is imported
* Add basic Dev Container configs
* Add adaptive SVG favicon and more SVG variants:
* See https://web.dev/building-an-adaptive-favicon/
* Added more variant of the original Inkscape icon:
- Text SVG
- Vectorized text path SVG
- Optimized SVG icon
* Remove `project_id` from task links (A few were missed in #4892)
* Remove unused and invalid method in `ProjectModel`
* Update `phpunit/phpunit` and `symfony/*` dependencies
* Update vendor folder
Version 1.2.32 (July 11, 2023)
------------------------------
* Fix unexpected EventDispatcher exception in cronjob and during logout
* Integration Tests: Run `apt update` before installing Apache
* Automatic action `TaskMoveColumnClosed` does not log column movement
* Tweak Sqlite connection settings to reduce database locked errors
* Bump `phpunit/phpunit` from `9.6.9` to `9.6.10` var/softaculous/elgg4/changelog.txt 0000644 00000010224 15234616556 0013411 0 ustar 00 6.3.6 (2026-07-02)
Contributors
Jerôme Bakker (2)
Security update
small security update
6.3.5 (2026-05-21)
Contributors
Jerôme Bakker (3)
Bug fixes
images: prevent OOM issues when images are too large to resize ab91d59dc
email: improved error handling when email transport fails b8cb23916
6.3.4 (2026-03-24)
Contributors
Jerôme Bakker (6)
Jeroen Dalsem (1)
Bug fixes
cache: improved caching logic for CDNs e83222a80
output: handle more short number format cases correctly b14ed92d0
6.3.3 (2026-01-16)
Contributors
Jerôme Bakker (2)
Jeroen Dalsem (1)
Bug fixes
js: datepicker not updating timestamp on manual input or reset 4c0788754
6.3.2 (2025-11-06)
Contributors
Jeroen Dalsem (2)
Jerôme Bakker (1)
Bug fixes
log: need to set log level after config loaded from db c8faaa71f
tests: correctly assert if route has required plugins b98d010e6
6.3.1 (2025-10-03)
Contributors
Jeroen Dalsem (7)
Jerôme Bakker (7)
Bug fixes
database: improved Phinx upgrade logging 2e5e9e859
log: correctly show error logging backtraces be61933d6
admin: prevent user details from crashing if system log disabled a7ead02fc
routes: prevent route registration with required plugins 4a36c91d9
developers: incorrect translation when inspecting routes 171e25f60
widgets: css fix to correct incorrect offset calculation 4b345d3f6
notifications: allow instant notifications without custom handler 477c4e70c
db: increased column limit for system_log object_class and event 7e7d13ed6
6.3.0 (2025-09-02)
Contributors
Jeroen Dalsem (35)
Jerôme Bakker (31)
Features
forms:
fieldsservice adds field help text if in translations 7a309e390
added ability to prioritize fields in fieldsservice b18700f67
notifications:
only get enabled notification preferences 9e4d0e437 closes #14879
manage attachments through notification handler feb26bf7d
add elgg_notify_user() function e39641556
added non-configurable notification handler 2076ffab6
entity: added subscribable capability 1130e5acd
input: checkbox switch restyled to be more accessible c16991485 closes #14853
developers:
added inspection view for notification handlers 7eb9e759c
added config flag to log database queries 3670771d3 closes #14804
messageboard: moved notification to event handlers 2dde700b1
group: moved notifications to event handlers a353fb119
output: added elgg_number_format function to format numbers f6a06437b
views:
added default no_results language key support bf019474e
added helper function for page/components/no_results 73ca1c26f
support full and summary subviews for entities 54f8205a9 closes #14803
admin: show the registration ip address on user info if available a7aaca410 closes #14531
events: allow events to continue on an exception 48a77dea5 closes #14801
css:
maintenance mode css is now similar to walled garden d11ade1a4 closes #14452
elgg_require_css is also applied when loading ajax content 6659eb162
routing: set default route parameters based on logged-in user d507e05d7 closes #14579
db: allow datetime filters for entities deleted column 871681f20
core: cast switch field type value to boolean in generic action 00541f23c
js: added integrity information to importmap for ES Modules 6776f2c6b
Performance
views: try to preload containers in sidebar comments block 383e9ea0d
Bug fixes
cli: improved cli logging 9a50cc795 closes #14758
relationship: set relationship ID during event sequence 7b30e0198
output: improved elgg_strip_tags to prevent 'gluing' content a53277e6f closes #14848
css: horizontal field labels work in all fieldset alignments f073af5d4 closes #14802
Deprecations
core: directly using ElggObject has been deprecated 066569f9e
db:
do not use the singular query option 'type_subtype_pair' 6f576fb05
using legacy date filter keys in elgg_get_* logs notice ff45c8dd7
lib: elgg_dump() has been deprecated use elgg_log() c86f9a2f0
6.2.5 (2025-08-14)
Contributors
Jeroen Dalsem (2)
Bug fixes
css: scroll issues with width calculation of likes colorbox popup 72d37f815 var/softaculous/slims/changelog.txt 0000644 00000016015 15234621035 0013526 0 ustar 00 SLiMS 9.8.0 (Bulian D Ace)
========================================================================
• Security: Hardened upload, image scraping, attachment handling, backup download/delete, lookup, visitor counter, and output escaping against SQLi, XSS, SSRF, CSRF, path traversal, and unsafe image metadata.
• Search: Added Fuzzy Search and Sphinx Search engines with settings UI, active-engine integration, fallback handling, and larger index word support.
• Reports: Added PDF export support via mPDF for datagrid reports and title lists.
• Maintenance: Added Image Maintenance Tool for cleanup, rebuild, backup, and synchronization.
• Circulation/Member: Added round-robin item reservation and fixed loan-history renewal/duplicate handling.
• Bibliography/OPAC: Improved custom-field handling, template configurability, external repository uploads, thumbnail generation, and UCS auto-delete behavior.
• Upgrade/Install: Synced installer schema with upgrade flow; optimized index definitions; updated dependencies and Docker environment handling.
• Extensibility: Added hooks for sysconfig, OPAC index, Admin index, and bibliography save data references.
SLiMS 9.7.2 (Bulian D Roger)
========================================================================
• Feature: Loan History Maintenance + menu integration.
• Upgrade: Removed loan-history triggers; replaced with direct updates; Add submenu handling in upgrade flow.
• UX: Clearer delete confirmations; defaulted withConfirm; switched form submit to blindSubmit; removed iframe submitExec.
• Assets: Added missing Colorbox CSS/JS includes.
• Reports: Improved procurement date handling (prioritize received_date) and validation.
• Circulation: Refactored member info display for clarity.
• Settings/I18n: Improved language selection; load global settings from DB.
• Access Control/Menu: Tightened checks; added widespread submenu access; refactored submenu arrays to associative keys; fixed isAdmin path matching.
SLiMS 9.7.1 (Bulian D Roger)
========================================================================
• Improved language selection handling and load of global settings from the database.
• Improved CSRF token management with backward compatibility and more robust handling.
• Modernized AJAX updater and related functions for better validation, error handling, and UX.
• Stronger password policy enforcement for OPAC and admin/member areas.
• Fixed CSV reader variable/initialization issues and improved CSV handling.
• Hardened SQL queries in procurement reports to validate and exclude invalid dates.
• Improvements to language selection and global settings loading.
SLiMS 9.7 (Bulian D Roger)
========================================================================
Security - System security enhancements to protect data and application stability.
• Comprehensive Security Patch: Patches SQL Injection and Stored XSS vulnerabilities, and enforces stronger password policies.
• Server-Side Attack Prevention: Fixes potential Server-Side Request Forgery (SSRF) and SQL Injection vulnerabilities.
• Upload Area Security: Improves .htaccess security.
• Disables PHP5 script execution.
• Sensitive Data Protection: Prevents direct access to hidden bibliographic details from the OPAC; hides credentials on error pages.
• Cookie and Session Security: Default SecureCookie attribute for user session security.
• Other Mitigations: Stripping EXIF data from uploaded images; fixed ModSecurity issue.
________________________________________
Feature Enhancements & Changes
• Customization and Extensibility: Added Custom Fields for Items; Expanded plugin ecosystem with the ability to load third-party languages; register new menus, and support for plugin modules.
• Added new hooks to the system: login process, OAI, and deeper system customization configuration.
• Support for custom OPAC templates.
• Database and Data Management: Implemented the ability to connect to multiple databases simultaneously, added a file migration feature to another server, and configured the Copy Cataloging feature.
• Development Environment: Docker support.
• User Interface and Experience (UI/UX): Implemented a "Debug Box" to display debug information in a more structured manner, improved AJAX dropdown performance, and added a progress button for the data import process.
________________________________________
Bug Fixes
• Data Import: Fixed various issues during the import process of bibliographic data (including MARC format) and membership, and fixed a bug where the import preview did not match the selected column separator.
• Application Stability: Fixed "undefined variable," "undefined key," or "undefined offset" errors in various modules.
• Data Management: Addressed issues with author and subject orphaned data deletion, the deletion process in the GMD module, the visit space, and backup files.
• Module Functionality: Improved LDAP authentication functionality, resolved barcode label plugin compatibility, and improved filtering and updating borrowing history table.
• System and Configuration: Fixed errors for large file upload, addressed incorrect URLs when running behind a web proxy, and resolved schema and multi-instance connection issues in PDO.
________________________________________
Other
• Dependency Updates: Updated external libraries such as gettext, PHPSpreadsheet, league/flysystem, and symfony/var-dumper.
• Refactoring and Code Quality Improvements: Refactored the registerAutoload strategy and form handling with the FormAjax class.
• Documentation: Added and updated documentation for the Polyglot feature, Actions, and Docker commands.
SLiMS 9.6.1 (Bulian)
========================================================================
Add : CSP Manager
Add : CSV import sample
Add : Clickable label element at input radio and checkbox
Add : CSV Import Sample for Biblio, Item, & Member data
Fixed : CJK (Chinese, Japanese, and Korean) character in E-Mail content
Fixed : Bug in stock opname resync
Fixed : MARC SRU Perpusnas RI
Fixed : SSRF & LFI vulnerability
Fixed : re-run session
Fixed : unmatch column type at mst_visitor_room
SLiMS 9.6.0 (Bulian)
========================================================================
Added : CSV import preview
Added : Due date warning email notification
Added : Storage library
Added : Console feature
Added : 2FA at admin login page
Added : Configuration for multiple databases
Added : Room location visitor counter
Added : Captcha configuration user interface
Added : Backup database notification
Added : PHP 8 for minimum requirement
Fixed : Zero existing items for stock opname report
Fixed : Compatibility with MySQL 8
Fixed : Loan by classification reporting query
Fixed : OAIPMH for GetRecord
SLiMS 9.5.2 (Bulian)
========================================================================
Added : Bookmark for biblio data
Added : Share option for biblio data
Added : Version number for OPAC static file
Added : Session Factory to handle custom session configuration
Fixed : Invalid Form Login
Fixed : Full text search in SearchEngineBiblio var/softaculous/helpdezk/changelog.txt 0000755 00000004460 15234621177 0014220 0 ustar 00 [Version 1.0.2] - 10/24/2014
Fixed bug: Description more than 4000 lines not write in db [Oracle]
Fixed bug: Note repass more than 4000 lines not write in db [Oracle]
Fixed bug: Pagination in the operator grid [Oracle]
Fixed bug: repass requests [Oracle]
Fixed bug: Warnings Module [Oracle]
Fixed bug: Upload logo
Add functionality: Domain name in pop server configuration
Fix bug: Insert person.
relat?rio de solicita??es trabalhadas
Add Knowledge Base
Add port in smtp server configuration
Fix bug in send e-amil by Gmail
Fix bug: Upload in Download Record [Oracle]
Add session validate in dashboard and not close de dashboard screen
Fix bug in Request Record closed and repassed
[Version 1.0.1] - 09/09/2014
Added Oracle database
Changes in the configuration file.
New features in the register of holiday.
Possibility of registration additional information when to terminate the request.
Added Report of Requests Additional Information.
Added button in the principal screen for the user with permition to access administrative area
Fixed email template.
Fixed bugs in LDAP/AD autentication.
Fixed bugs in the program to import users .
Developed REST API to mobile aplications.
Added reason field when the expiration date of request is changed.
Added program to register the work hours.
Adjustments to the system functionality.
Added possibility to see the users phone number in the request.
Added possibility to open requests by email.
Added "auto refresh" in grids.
Added feature that allow to save the show or hide certain columns in grids. .
Added feature that allow to save the size of the columns in the grid.
Added feature that allows recording in the session the columns order of the attendants.
[Version 1.0.0] - 02/12/2014
Fix bug (Sql Injection on login page)
Stable Version
[Version 0.0.17] - 01/18/2014
Integration with LDAP/ MS AD
New open request screen.
Select the area default in request screen.
Set default priority bug to save.
New reports
[Version 0.0.16] - 11/11/2013
Fixed bug in login screen module warnings
Functionality session time added
Check if the group already exists when you enter a new
Check if the department already exists when you enter a new
Do not show buttons to save and forward the query screen when the request is for approval
Adjust the search by description and added new fields in the search
var/softaculous/collab/changelog.txt 0000644 00000020600 15234622501 0013625 0 ustar 00 Collabtive 3.1
+ Fix a bug where the generic female avatar wasnt shown in the user-admin area
+ Update PHPMailer to its latest stable release 5.2.2 to mitigate potential issues with PHP7
+ PHPMailer dependency now managed by composer
+ PCLZip dependency now managed by composer
+ Fix CSP header frame-ancestors
+ Submit timetracker entries asyncronously
+ Display total hours in timetracker report (again)
+ Make forms reset by default after they have been submitted.
+ Allow users to be assigned to milestones
+ When moving the due date of a milestone, the due dates of associated tasks are also moved
+ Allow multiple tasklists to be created when creating a milestone
+ Display tree view of tasklist assigned to a milestone in milestone details
+ Display messages in milestone details treeview
+ Make opening an accordion slide a lot faster in accordions with many items
+ Replace pixel graphics in the tree view with SVG vector graphics
+ Fix the accordion in "late" milestone when creating a new milestone that is late
+ Draw milestones associated to messages, with their tasklists, tasks in a tree view
+ Draw files associated to messages in a tree view in the message details.
Collabtive 3.0.2
+ Fix character encoding issue with some special characters in titles of projects, tasks, etc
+ Refactor lots of vue.js 1.0 syntax to be compatible with 2.0
+ Change default number of projects displayed on the desktop to 15
+ Fix font encoding issue in PDF generation
+ Change truncation of project titles to 35
+ Fix the accordeon in project->milestones
+ add an additionalFields field to the model of the viewManager. It facilitates passing arbitrary global data from an endpoint to a vue template
+ Improve pagination with many pages: the pagination control now display only the first, second as well as the current +-1, and the 2 last pages
+ Actually load minified JS assets in some places
+ Set CSP frame-ancestors to 'self'. this prevents clickjacking attacks, where collabtive is embedded into other website contexts.
Collabtive 3.0.1
+ Fix broken link to task list in upcoming milestones block
+ Fix XSS Vector in the user profile
+ Fix selection of subfolders when uploading files
+ Make truncation of project titles more consistent at 40 characters.
+ Correctly display timetracker and projects block in a users own profile
+ Fix user profiles when not logged in as admin
+ Fix changing the role of an existing user that already had a role assigned.
+ use a global HTMLPurifier object in getArrayVal() instead of creating a new one for each variable. this should improve performance by creating a
much fewer objects.
Collabtive 3.0
+ All external library dependencies now live in /vendor/ and are managed using composer.
+ Restructured templates. Form templates now live in the /forms/ subdirectory of the template folder.
+ Start using native HTML5 form validation instead of a JS library
+ Added blockaccordeon for the blocks in the userprofile
+ Improved the look of the file list view
+ Fix a bug where getThemes() wouldnt finish if a template has no /theme/ folder
+ Properly minify all JS assets using closure compiler
+ Display the parent message in the breadcrumbs on top when viewing a message
+ Messages now can have recursive replies. That is, each reply can have a reply, which can have a reply and so on.
+ Private messages can now be added to any project. They can only be viewed by their designated recipient.
+ Don't show mobile template in the template selector. these should not be activated directly but set by class mobileDetect()
+ Updated the database schema of new installations to use innoDB instead of myISAM storage engine. myISAM is outdated, and innoDB now the default on
mysql.
+ Moved helper classes to replace inline styles to /theme/css/style_helpers.css
+ Most inline styles have been refactored to classes. One of the next releases will disable inline style in CSP
+ The sidebar is collapsed by default, giving more room for the main content area
It can be expanded by clicking
+ Added viewManager functions that make it easy to create, and update reactive vue.js views
+ Added helper methods css(), cssAll, cssId() to ajax.js
+ All animations now use velocity.js. This removes the dependency on scriptculous and enables HW acceleration on mobile.
+ Implemented new modal dialog for the calendar, that is not based on prototype
+ Implemented accordeon that does not depend on prototype
+ Added example plugin
+ Plugin system that is completely modular and cacheable.
Plugins are defined as their own classes, and implement the collabtivePlugin interface
Arbitrary Plugin Hooks can be placed in templates to allow dependency injection
+ All forms are now submitted asyncronously
+ Rewrite of UI rendering with vue.js to enable more reactive UI
+ Changed constructor of SmartyPaginate.class.php to be compatible with PHP 7
+ Fixed unfiltered variables
+ Refactored helper methods to use the new ajaxRequest object.
+ Implemented ajaxRequest() object in ajax.js that wraps native xmlhttprequest to create POST and GET ajax requests.
+ Improved database checks in init.php (srichter)
+ Fixed file download link in file upload email notification
+ Performance improved in getMyProjects() SQL query by using a JOIN (srichter)
+ Fixed a bug in thumb.php where not-logged in users could load thumbnails of images they know the path to
+ Converted the filetype check int he user image upload to a whitelist to be more secure from malicious file uploads.
+ Added code for excel import
+ Code refactoring to use arrays $cleanPost, and $cleanGet - these supply the value of $_POST and $_GET sanitized from XSS vectors
+ Converted a few remaining SQL queries to prepared statements
+ Converted loading of content on the desktop to an asyncronous method using vue.js. This speeds up the loading of the desktop page considerably.
+ Adding of projects now done asyncronously
+ Refactoring of code
+ Converted several queries into JOINs to improve performance
+ Converted loading of project tasks to asnycronous loading
+ Converted loading of timetracker to asyncronous loading
+ Converted loading of milestones to asyncronous loading
+ Converted loading of messages to asyncronous loading
+ Made adding of projects asyncronous
+ Late, Current and upcoming milestones are now displayed in a block accordeon
+ Project tasks are now arranged as a block accordion
+ Rewrote accordion code to no longer depend on prototype.js
+ Added feature to optionally adapt all lower-level deadlines upon changing a project or milestone deadline
Collabtive 2.1
+ Removed accordion-related JS legacy code from desktop
+ Added default charset to all create table statements
+ Removed creation of unnecessary table
+ Added collation info to install-readme files
+ Fixed bug in start date vs. end date comparison when adding or editing a task
+ Fixed bug to return correct customer for a project
+ Made customer selection available in admin area
+ Localized customer-related labels and labels for the installation procedure
+ More SQL queries use prepared statements now
+ Remove file upload for IE versions 9 and older
+ Removed several calls to htmlspecialchars(). they are obsoleted by the html purifier lib and caused issues
+ Removed several calls to stripslashes(). they are obsoleted by html purifier
+ Fixed a problem with ambiguous field names
+ Fixed a missing GROUP BY clause
+ Implemented SQLite support. It can be chosen in the installer.
+ Removed the tags class for good
+ Add folder /files/standard/ics/ to the installation package
+ Removed call to file_exists in getArrayVal() - it worked around an edge case in the installer. This safes a lot of calls to file_exists()
+ Fixed a bug that prevented files from being attached to messages
+ Fix the link in the file-uploaded email notification
+ Made mylog object global. This safes a lot of object instantiations and improves performance. (srichter)
+ Reuse $myOpenProjects from init.php in index.php , improving performance (srichter)
+ Improved SSL recognition (srichter)
+ Improved the timetracker widget on the project dashboard to alternatively take working hours directly as input
+ Re-added closed projects on the desktop
+ Fix deleting of task assignments when deleting a project
+ Enable deleting and editing of customers
+ Make the password field in add user obfuscated
+ Fix replying to messages on the desktop
+ Fix cancel buttons in desktop->add task and desktop->edit project
+ Fix inserting uploaded images from the tinyMCE image list
+ Make the datepicker fade out faster var/softaculous/hubzilla/changelog.txt 0000644 00000024306 15234630072 0014214 0 ustar 00 Hubzilla 11.2.1 (2026-05-20)
- Fix channel creation failing in some situations
- Drop payloads with unsafe json-ld keys in LDSignatures::verify() and add tests
- Fix App::$profile set for removed channels
- Fix MessageFilter breaking when expecting string but array is given
- Superblock: fix blocking failed in some setups (sponsored by NLnet NGI0 Commons Fund/Superblock)
- Superblock: fix missing import of attribute (sponsored by NLnet NGI0 Commons Fund/Superblock)
- Superblock: improved detection of reshares (sponsored by NLnet NGI0 Commons Fund/Superblock)
- Cards: fix PHP warning
- Gallery: fix PHP warnings and only implement observer related javascript if there actually is an observer
- Diaspora: fix missing local namespace for thr_parent
Hubzilla 11.2 (2026-03-26)
Features
- Introduce parse_webbie() for preparing webbies and URLs for webfinger usage
- Allow to override cUrl useragent
- New HQ system status widget for admins (sponsored by NLnet NGI0 Commons Fund/Performance Profiling)
- Refactor drop_query_params() to deal with array params and add test
Maintenance
- Remove private members from API docs
- Remove custom CA certs
- Add type annotations in Extend\Route
- Set method visibility in Extend\Route
- Add API docs and licence info to Extend\Route
- Add a short sleep interval to Activity::init_background_fetch() when adding new work items in a loop
- Add a short sleep interval to the convo daemon loop to spread the load for large collections
- Use PHP matching rules in util/run_xgettext
- Store translation templates as .pot instead of .po
- Deprecate NULL_DATE constant in favor of DBA::get_null_date()
- Composer require guzzlehttp/psr7
- Update composer libs
- Move HQ channel notifications widget HTML to template
- Deprecate tags and attachment in activities
- Update the nginx config example to meet the more modern approach
Bugfixes
- Fix route and widget register() not deduplicating entries
- Fix issue in route and widget unregister() where we unregistered even if only one of the two arguments did not match
- Fix issue in Storage/Directory where we returned a partial path instead of throwing exception if a directory of a path could not be found
- Fix possible endless loop in externals daemon
- Fix fatal error in italian translation file
- Fix mod network not displaying direct messages when filters active - issue #1973
- Fix ghost notifications with reshared items - issue #1970
- Fix issue with double typed objects in Lib/Activity
- Fix events displaying event timezone instead of adjusted to timezone
- Fix duplicated terms in activity object
- Fix last modified timestamp not updating in attach_store()
Addons
- Wopi: fix headers already set warning when serving the file to the client
- Superblock: complete rewrite with extended functionality and added tests for version 3.0 (sponsored by NLnet NGI0 Commons Fund/Superblock)
- Diaspora: use Diaspora/2 useragent when fetching hcards to prevent being redirected to some shady bot guard
- Add composer config and autoload files for addons
- Wopi: return early in construct_page hook and
- Wopi: fix wrong hook name in uninstall function
Hubzilla 11.0 (2026-01-30)
Features
- Rewrite Lib/MessageFilter (ported from forte) and add more tests
- Rewrite editor encryption feature to implement libsodium and PBDKF2 for password hashing
- Change default feed behaviour to return only toplevels - issue #1953
- Add active themes list to siteinfo
- Show viewsource link for pubstream items
- Implement singleton object cache
- Restructure cross protocol message payload
- View source will now display the raw object instead of just the object body
- Implement OWA2
Maintenance
- Remove capability to update xchan entries via api
- Move mod search HTML to template
- Move channel activities HTML to template
- Update util/run_xgettext.sh to ignore not relevant directories
- Update composer libs
- Move mod bookmarks HTML to template
- Update italian translation
- Use finfo class to determine mime type in attach_store()
- Bump attach.filetype field length to match photo.mimetype
- Move share container HTML to template
- Update cloud directory template to provid necessary data for the WOPI addon
- Remove appearances of curl_close() - deprected and noop since PHP version 8.0
- Remove appearances of GD imagedestroy() - deprected and noop since PHP version 8.0
- Improve replies id detection
- Remove deprecated ofeed and ochannel modules
- Remove support for deprecated AS1 verbs and objects in the network stream filters
- Improve detection of allday events
- Improve handling of events with no endTime
- Provide the event hash and timezone in the event object
- Improve test isolation
- Add quoteUri field to activities
- Update API docs for hooks
- Improve share to quote conversion
- Rename (un)serialise() -> json_(un)serialize()
- CI: Replace use of create_identity in MagicTest
- CI: Add test db fixtures for hubloc table
- CI: Stub crypto calls from CreateIdentityTest (performance)
- CI: Add tests for Profiles module
- CI: Add tests for Zotfinger module
- Use json serialisation for iconfig
- CI: Add test db fixtures for channel table
- CI: Reload test fixtures from db
- CI: Set logged in channel for delete account test
- CI: Use root passwd to set up MySQL test db
- Improve dba_pdo::insert function
- Update install document
- Remove unused sprintf.js
- Move twitteroauth lib to addon_common
- Move slinky lib to addon_common
- Move openid lib to openid addon
- Move XRI lib to wppost addon
- Move diff lib to wiki addon
- Remove unused bootbox lib
- Remove unused images
- Move language specific folders into its own subfolder in /view
- Remove deprecated sjcl lib and references
- Deprecate outbound JSalmon signatures
Bugfixes
- Fix reply-to button not diplayed for anonymous visitors allthough permission is granted
- Fix wrong icon class in mod cloud
- Fix bulk deleting files
- Fix cloud root folder shows unknown error
- Fix edited timestamp in attach_store() in case of update
- Fix grammar in Lib/Enotify::submit()
- Fix content-type and length header in Module\TestCase
- Fix args in xchan_fetch() not escaped
- Fix notification for events linking to wrong message id - issue #1954
- Fix post_mail permission not working independend from the send_stream/post_comment permissions - issue #1951
- Fix item relayed again in case it comes back from a channel that sources our channel
- Fix activity signer not set
- Fix category link not update at clone - issue #1932
- Fix tag delivery attempted item type is not post - fix issue #1941
- Fix block/unblock account - issue #1947
- Fix warnings in profile_edit template
- Fix warnings for optional args in field templates
- Fix undefined vars in mod profiles
- Fix fullscreen button class
- Fix delivery report when syncing cloned channels
Addon
- New addon implementing basic WOPI protocol - integrates collabora with the Files app
- Redphotos: addon removed - was used for migration from redmatrix to hubzilla
- Redfiles: addon removed - was used for migration from redmatrix to hubzilla
- Nsfw: rewrite to implement new MessageFilter
- Wiki: fix long loading time due to oembed attempts
- Wiki: improved SQL query
Hubzilla 10.6.1 (2025-11-21)
- Fix insufficient target attribution for forums
- Fix reshare regression in forum logic
Hubzilla 10.6 (2025-11-04)
Features
- Improved background fetching of replies collection
- Refactor ASCache and implement ASCache::isCacheable()
- Implement ASCache in ASCollection to improve performance
- Add json support for help index widget and add a new template
- Implement hidden pconfig system.notifications_count_limit
- Implement hidden pconfig system.invert_notifications_order
- Implement mark seen button for unseen pubstream notifications
- Iplemented per forum unseen items notifications
- Intoduce Activity::pasteQuote() to paste the quote into the body at the right place if applicable and add test
- Implement ASCache in Activity::get_quote()
- Display webfinger address instead of channel URL in HQ widget notifications tab for consistency with other tabs
- Implement FEP-e232 object links
Maintenance
- Use a better supported json canonicalization library
- CI: up PHP images to version 8.2
- Enable gmp PHP extension in gitlab-ci
- Update composer libs which now require gmp PHP extension
- HTTPSig: return early if we got no key info
- Removed deprecated conv_list template
- Refactor PhotoGd::imageString() to reduce complexity
- Add ImageQuality class to hold quality values
- CI: introduce a quick test to check that smarty templates compile in the pretest stage
- CI: upgrade to postgres 13
- CI: add pretest step and run PHPStan
- Updated Spanish strings
- Remove redundant f arg in tagcloud widget
- Remove dead code in handle_tag()
- Enable unit tests for extensions
- Remove obsolete phpunit configurations
- Code cleanup
Bugfixes
- Fix encoding for webpage, layout and block title and body when editing - issue #1946
- Fix issues which prevented files and photos to be updated correctly after rename via DAV
- Fix contact edit modal logic hijacking URL fragment on pages other than /connections
- Fix deprecation notice in MessagesWidgetTest
- Fix whole URL punified in mod follow
- Fix whole URL punified in mod search
- Fix setup check for zip PHP extension
- Fix issue where remote channels could post to wall if they had write_storage permission - issue #1940
- Fix not all notification icons updated
- Fix notification icon not updated on medium screen size
- Fix image/gif not handled in PhotoGd::imageString()
- Fix issue where not all seen items where removed from the unseen notifications
- Fix item_by_item_id() not returning Announce items - issue #1936
- Fix archive widget not returning results if in single item mode - issue #1911
- Fix db query in verify_email_address()
- Fix search in mod channel only returning single post items - issue #1929
- Fix commented out register_account hook breaking notify admin addon
Addon
- Superblock: add tests
- Wiki: fix photo embed buton for markdown
- Pubcrawl: return early if we could not find an AS actor id and add some logging
- Cart: adapt logic to fetch tpl from theme folder first
- Cavatar: remove redundant arg from cavatar_init() var/softaculous/ospos/changelog.txt 0000755 00000001443 15234631225 0013546 0 ustar 00 ## [3.4.0] - 2025-02-06
- Translation updates (Spanish, Indonesian, Swedish, Urdu, Chinese, Thai, French, Dutch)
- PHP 8.x support
- Security fixes (XSS, SQLi)
- Migration to Gulp as buildsystem
- Decimal validation fix
- Sticky header fix
- Receipt sent as attachment
- Barcode generation library upgrade
- Bump framework to CodeIgniter `4.x.x`
- Improve security performance against bots
## [3.3.9] - 2023-11-06
- Translation updates (Spanish, Croatian, Russian, English, Indonesian, Thai, Central Khmer)
- Fix logout race condition issue
- Fix docker compose file
- Minor report fixes
[3.3.8] - 2022-08-03
Translation updates (Flemish, Vietnamese, Thai, Azerbaijani, Spanish, French)
Fix logo removal issue (CSRF regression)
Substract refunds from total rewards as payment method var/softaculous/miniflux/changelog.txt 0000755 00000006713 15234640723 0014246 0 ustar 00 Version 1.2.4 (January 4 2017)
------------------------------
* Add migration script to Miniflux 2
* Add zh_TW and Polish translation
* Use search input type instead of text
* Remove deprecated referrer CSP policy
* Remove doc links from help page
* Use Alpine/Nginx/PHP7 for the Docker image
Version 1.2.3 (June 23 2017)
----------------------------
* Add support for Shaarli
* Add option for saving bookmarks as "unread" to Pinboard
* Show feed dates on edit subscription page
* Handle HTTP header "X-Forwarded-Proto: https"
* Add subscription option to ignore expire HTTP header
* Add getItemsByStatus API call
* Allow the preferences to be configured in the config.php file
* Update PicoFeed
* Update translations
Version 1.2.2 (March 7 2017)
-----------------------------
* Offer the possibility to edit/delete groups
* Add option to not redirect user when having nothing to read
* Add hotkey Shift+A to mark all items as read
* Add Hungarian translation
* Add config parameter to define base URL
* Select next unread item when opening current item
* Show bookmark/read icons for all screen resolutions
* Supports utf8mb4 encoding for Mysql schema
* Fix wrong default value in config.default.php
* Avoid infinite redirects in unread/group page
* Do not scroll back to the top of the page after touch events
* Avoid PHP notice when adding invalid feed with bookmarklet
* Increase default body size to 10MB
* Update Russian, Serbian translation
* Reorganize templates into sub-folders
Version 1.2.1 (Jan 18 2017)
---------------------------
New Features:
* Mysql support
* Offer the possibility to define different URL for themes folder
Improvements:
* Improve Xpath query for favicons
* Handle the fact that a user can be removed but have feeds in queue (worker)
* Do not download items each time for feeds with content scraper enabled
* Background jobs are not loading user settings properly
* Allow producer to be executed only for a given user
* Always use real URL instead XML feed URL
* Move autoflush calls
* Display list of groups for each subscription
* Disable automatically duplicated feeds
* Increase url field size for Postgres
* Left swiping also mark item as read on mobile
* Make import script compatible with Postgresql
* Allow different limits for users in cronjob
* Update to PicoFeed v0.1.31
* Update Czech translations
* Update zh_CN translations
* Update ru_RU translations
Bug fixes:
* Marking special group "Unread" as read through Fever API does not work
Version 1.2.0 (Jan 5 2017)
--------------------------
* Major change to the database structure to have a single database for multiple users
* Web access token for the cronjob
* New config parameter to disable web access for the cronjob
* Debug mode parameter is moved to the config file
* The console web page have been removed
* Remove automatic software update from the user interface
* New API methods (not backward compatible)
* Fever API tokens are longer than before
* Always update feed URL to avoid useless redirection for futures requests
* Add support for Wallabag service
* Show last parsing error message in user interface
* Disable automatically a feed after too many failures
* Add support for Expires and Cache-Control headers (HTTP cache)
* Flush all user remember me sessions when changing password
* Update Docker image to Ubuntu 16.04 and PHP 7.0
* Add Docker compose file
* Add functional tests (Json-RPC API and Fever API)
* Add unit tests
* Minify Javascript and add automated syntax check on the CI
* Minify CSS var/softaculous/presta17/changelog.txt 0000644 00000014247 15234642560 0014060 0 ustar 00 ####################################
# v9.1.4 - (2026-06-03)
####################################
- Core:
- Bug fix:
- #230: Update dependencies, symfony and twig, and faceted search (by @jolelievre)
####################################
# v9.1.3 - (2026-05-21)
####################################
- Core:
- Improvement:
- #41515: Upgrade Symfony package to 6.4.40 and twig/twig to 3.26.0 (by @cnavarro-prestashop)
####################################
# v9.1.2 - (2026-05-11)
####################################
- Back Office:
- Improvement:
- #40912: Handle no value objects, like NoStateId, NoCombinationId in ValueObje… (by @jolelievre)
- #40859: Fix: in the customer form from admin side, it is missing the newsletter option as Partner Offers (by @Codencode)
- #40636: Always execute non display hooks in backoffice (by @Hlavtox)
- Bug fix:
- #41334: Fix theme import from web throwing PHP warnings on invalid URLs (by @mattgoud)
- #41327: Throw exception on order detail insert failure during conversion (by @nicosomb)
- #41320: Fix unable to delete order product when catalog product is deleted (by @mattgoud)
- #41193: Fix child theme translation loading in BO translation API (by @Codencode)
- #41100: Fix email HTML previews for module emails (by @axel-paillaud)
- #41018: Fix #33921 - Add specific error message when embedded HTML is blocked (by @mattgoud)
- #40975: Fix sidebar blanking on RTL (by @cnavarro-prestashop)
- #40971: Fix pass shop group ID when setting context in LogoUploader (by @mehdiboissat-bron)
- #40964: Use sticky positioning for module selection panel in Positions page (by @intraordinaire)
- #40866: Fixed bug for free gift button on cart rules (by @Touxten)
- #40829: Fix validate medium pass (by @tleon)
- #40745: Allow category tree selector to open when no default category (by @Kaikina)
- #40736: Fix: Error when creating an attribute for a group in “All shops” context with multiple shops (by @Codencode)
- #40706: Fix: Features with the same name are shown only once when creating values and assigning to products (by @Codencode)
- #40693: Fix: [BO][Multishop] Design > Theme & Logo: when updating the logo in the “All shops” context, only shop ID 1 gets updated (by @Codencode)
- #40070: Fix: actionCarrierUpdate not triggered on migrated carrier page (by @Codencode)
- #40015: Fix: BO - Import for Customers will overwrite the already existing customers (by @Codencode)
- Front Office:
- Improvement:
- #41087: Add checkout step properties (by @ga-devfront)
- Bug fix:
- #41319: Fix product details overridden when changing attribute in quickview modal (by @mattgoud)
- #41316: Fix wrong state saved when country is changed quickly before AJAX completes (by @mattgoud)
- #40853: Fix fuzzy search SQL when closest word contains apostrophe (#40847) (by @Codencode)
- #40795: Fix: Fatal error in hookActionCartSave when switching language and calling Product::getPriceStatic() or Cart::getProducts() (by @Codencode)
- Refactoring:
- #40828: Use context instead of cookie where relevant (by @Hlavtox)
- Core:
- New feature:
- #40613: Add --skip-overrides option to prestashop:module CLI command (by @jf-viguier)
- Improvement:
- #41419: Update Symfony components after 6.4.38 release (by @nicosomb)
- #41383: Update Symfony components after 6.4.37 release (by @nicosomb)
- #41358: Bump 9.1.2 (by @Progi1984)
- #41230: Bump the version of the prestashop/dashgoals package from v2.0.4 to v2.0.5 (by @cnavarro-prestashop)
- #41188: Update Symfony components after 6.4.36 release (by @nicosomb)
- #41086: Fix tests with admin api (by @boherm)
- #41059: Set version to 9.1.1 (by @Progi1984)
- #41041: Add workflow to automatically set milestone based on target branch (by @jolelievre)
- #41033: Update Symfony components after 6.4.35 release (by @nicosomb)
- #41009: Improve bulk actions returns from admin api (by @boherm)
- #40431: Feat(FrontController): Add Specialized Hooks (by @Kaikina)
- Bug fix:
- #41443: Update dependencies for 9.1.2 (by @jolelievre)
- #41412: Fix sending test emails from/to idn domains (by @boherm)
- #41410: Switch employee email from ps_shop_email when forwarding customer threads to another employee (by @boherm)
- #41317: Fix module uninstall failing when override contains multi-line property or constant value (by @mattgoud)
- #40894: EditStateHandler : Fixes if ZoneId or Country are null (partial update) (by @Progi1984)
- #40888: Add ShopContext and LanguageContext to FeatureAttributeRepository (by @boherm)
- #40655: Fix saving module settings when legacy profiler enabled (by @kpodemski)
- #40651: Return correct product name for attributes (by @Prestaworks)
- Refactoring:
- #40834: Use constants for range behavior (by @Hlavtox)
- Installer:
- Improvement:
- #41448: Update default catalog 9.1.2-build (by @ps-jarvis)
- Localization:
- Improvement:
- #40945: Turkey updated its tax rates on July 10, 2023. (by @metineren)
- Tests:
- Improvement:
- #41347: Functional Tests : Bump @prestashop-core/ui-testing (by @Progi1984)
- #41236: Functional Tests : @prestashop-core/ui-testing (by @Progi1984)
- #40990: Functional Tests : Bump @prestashop-core/ui-testing (by @Progi1984)
- #40954: Functional Tests : Improve nightly (by @Progi1984)
- #40946: Functional Tests : Improve `functional:BO:orders:03-05` (by @Progi1984)
- #40933: Functional Tests : Improve `functional:BO:orders:01-view-and-edit-order` (by @Progi1984)
- #40931: Functional Tests : Audit : BO - Wall of Fame (by @Progi1984)
- #40923: Dynamize docker names when using docker exec in CI (by @jolelievre)
- #40911: Functional Tests : Improve `functional:BO:orders:03-05` (by @Progi1984)
- #40882: Functional Tests : Bump @prestashop-core/ui-testing (by @Progi1984)
- #40873: Functional Tests : Stabilize GDPR Tests (by @Progi1984)
- Refactoring:
- #41025: Functional tests - Refacto create customer from order page (by @nesrineabdmouleh)
- #40910: Functional tests - Add first UI test of discount V2 : Minimum purchase amount (On cart amount) (by @nesrineabdmouleh) var/softaculous/whmcs813/changelog.txt 0000644 00000012341 15234643607 0013763 0 ustar 00 Version 8.13.5 (Maintenance Release)
Maintenance
WHMCS-26068 — Undisclosed Security Fix
WHMCS-26192 — Improved security around Admin password resets.
WHMCS-26194 — Improved security around User password resets.
WHMCS-26206 — Improved security around Invoice processing Hook Points
WHMCS-26338 — Improved security around User logouts.
WHMCS-26339 — Admins require “View Clients Summary” permission to download client files
WHMCS-26425 — Undisclosed Security Fix
WHMCS-26466 — Persist Sign-In Integration notice when appropriate
WHMCS-26624 — Undisclosed Security Fix
Modules
WHMCS-24791 — Improved security for paying invoices with Stripe
WHMCS-26067 — Improved security for paying invoices with PayPal Basic
WHMCS-26381 — Improved security for paying invoices with PayPal Payments
WHMCS-26444 — Improved security of logging in WorldPay FuturePay
WHMCS-26566 — Corrected variable name for Enom
Version 8.13.4 (Maintenance Release)
Maintenance
WHMCS-25235 — Undisclosed Security Fix
WHMCS-25253 — Undisclosed Security Fix
WHMCS-25271 — Add validation Improvements in Admin Area
WHMCS-25272 — Undisclosed Security Fix
WHMCS-26073 — Improved encryption method for sensitive data storage
WHMCS-26075 — Increased randomness of guest ticket access key generation
WHMCS-26189 — Undisclosed Security Fix
Modules
WHMCS-26056 — Undisclosed Security Fix
WHMCS-26058 — Undisclosed Security Fix
WHMCS-26060 — Undisclosed Security Fix
WHMCS-26061 — Undisclosed Security Fix
WHMCS-26063 — Undisclosed Security Fix
WHMCS-26066 — Undisclosed Security Fix
WHMCS-26072 — Undisclosed Security Fix
WHMCS-26074 — Undisclosed Security Fix
WHMCS-26079 — Undisclosed Security Fix
WHMCS-26145 — Remove Asiapay, Gate2shop, Inpay & Paypoint from distribution
WHMCS-26261 — Improve security around Reports
Version 8.13.3 (Maintenance)
Maintenance
WHMCS-26041 - Security Fix for CVE-2026-2920
Version 8.13.2 (Maintenance Release)
Maintenance
We are limiting technical details on these changes to protect users who may not yet have upgraded.
WHMCS-25506 — Undisclosed Security Fix
WHMCS-25507 — Undisclosed Security Fix
WHMCS-22710 — Undisclosed Security Fix
WHMCS-25508 — Improved input field Validation in Admin Area
Version 8.13.1 (Maintenance)
Maintenance
We are limiting technical details on these changes to protect users who may not yet have upgraded.
WHMCS-18936 — Prevent error when sending email from custom email template with bad attachment reference
WHMCS-19766 — Disabling auto renewal for a domain in the admin area does not cancel the renewal invoice
WHMCS-22025 — Clarify Ioncube Loader Minimum version for PHP 8.3
WHMCS-22090 — Improve Activity Log entry for Admin-initiated User password change
WHMCS-22228 — Layout changes on Client Area homepage after switching the theme (Also known as: WHMCS-22280)
WHMCS-22233 — Improve formatting for invoice modification log entries
WHMCS-22245 — Improve CSS for MarketConnect DigiCert landing page
WHMCS-22289 — Honour parent theme definition for captcha.tpl on Login as Owner link
WHMCS-22304 — Correct regression for target opening of custom module actions (styled as links) in clientarea sidebar
WHMCS-22308 — Ensure ticket scheduled actions can be updated or cancelled when language is not set to English
WHMCS-22450 — Improve visual responsiveness for SocialBee MarketConnect landing page
WHMCS-22456 — Correct alignment of Admin Global Warning text
WHMCS-22457 — Correct regression for displaying embedded videos in Knowledgebase articles
WHMCS-19435 — Undisclosed Security Fix
WHMCS-19947 — Undisclosed Security Fix
WHMCS-19950 — Undisclosed Security Fix
WHMCS-19952 — Undisclosed Security Fix
WHMCS-19953 — Undisclosed Security Fix
WHMCS-19954 — Undisclosed Security Fix
WHMCS-19955 — Undisclosed Security Fix
WHMCS-19957 — Undisclosed Security Fix
WHMCS-19958 — Undisclosed Security Fix
WHMCS-19959 — Undisclosed Security Fix
WHMCS-19960 — Undisclosed Security Fix
WHMCS-19967 — Undisclosed Security Fix
WHMCS-19981 — Undisclosed Security Fix
WHMCS-19983 — Undisclosed Security Fix
WHMCS-19984 — Undisclosed Security Fix
WHMCS-19987 — Undisclosed Security Fix
WHMCS-19992 — Undisclosed Security Fix
WHMCS-20029 — Undisclosed Security Fix
WHMCS-20064 — Undisclosed Security Fix
WHMCS-20066 — Undisclosed Security Fix
WHMCS-21726 — Undisclosed Security Fix
WHMCS-21729 — Undisclosed Security Fix
WHMCS-21763 — Undisclosed Security Fix
WHMCS-21765 — Undisclosed Security Fix
WHMCS-21766 — Undisclosed Security Fix
WHMCS-21768 — Undisclosed Security Fix
WHMCS-21769 — Undisclosed Security Fix
WHMCS-21862 — Undisclosed Security Fix
WHMCS-21884 — Undisclosed Security Fix
WHMCS-21998 — Undisclosed Security Fix
WHMCS-22041 — Undisclosed Security Fix
Modules
WHMCS-21375 — Ensure only partial payment amount is capture when appropriate for invoices paid by PayPal Payments (Also known as: MODULE-8180) var/softaculous/whmcs/changelog.txt 0000644 00000006117 15234657350 0013533 0 ustar 00 Version 9.0.6 (Maintenance Release)
Maintenance
WHMCS-25193 — Define a default region for S3-compatible Storage Providers
WHMCS-25216 — Correct invoice chunking logic
WHMCS-25397 — Improved error handling for ReCaptcha v2 and v3
WHMCS-26068 — Undisclosed Security Fix
WHMCS-26192 — Improved security around Admin password resets.
WHMCS-26194 — Improved security around User password resets.
WHMCS-26206 — Improved security around Invoice processing Hook Points
WHMCS-26338 — Improved security around User logouts.
WHMCS-26339 — Admins require “View Clients Summary” permission to download client files
WHMCS-26425 — Undisclosed Security Fix
WHMCS-26466 — Persist Sign-In Integration notice when appropriate
WHMCS-26624 — Undisclosed Security Fix
Modules
WHMCS-24791 — Improved security for paying invoices with Stripe
WHMCS-26067 — Improved security for paying invoices with PayPal Basic
WHMCS-26381 — Improved security for paying invoices with PayPal Payments
WHMCS-26444 — Improved security of logging in WorldPay FuturePay
WHMCS-26566 — Corrected variable name for Enom
Version 9.0.5 (Maintenance Release)
Maintenance
WHMCS-22846 — Improve product downgrade credit calculation
WHMCS-25235 — Undisclosed Security Fix
WHMCS-25253 — Undisclosed Security Fix
WHMCS-25271 — Add validation Improvements in Admin Area
WHMCS-25272 — Undisclosed Security Fix
WHMCS-25466 — Resolved ClassLoader error during system updates
WHMCS-26014 — Undisclosed Security Fix
WHMCS-26057 — Undisclosed Security Fix
WHMCS-26073 — Improved encryption method for sensitive data storage
WHMCS-26075 — Increased randomness of guest ticket access key generation
WHMCS-26189 — Undisclosed Security Fix
Modules
WHMCS-26044 — Undisclosed Security Fix
WHMCS-26056 — Undisclosed Security Fix
WHMCS-26058 — Undisclosed Security Fix
WHMCS-26060 — Undisclosed Security Fix
WHMCS-26061 — Undisclosed Security Fix
WHMCS-26063 — Undisclosed Security Fix
WHMCS-26066 — Undisclosed Security Fix
WHMCS-26072 — Undisclosed Security Fix
WHMCS-26074 — Undisclosed Security Fix
WHMCS-26079 — Undisclosed Security Fix
WHMCS-26145 — Remove Asiapay, Gate2shop, Inpay & Paypoint from distribution
WHMCS-26261 — Improve security around Reports
Version 9.0.4 (Maintenance)
Maintenance
WHMCS-26041 - Security Fix for CVE-2026-29204
Version 9.0.3 (Maintenance)
Maintenance
WHMCS-19418 — Updated Setup Tasks List
WHMCS-25024 — Improved session handling in the Client Area Nexus Theme
WHMCS-25168 — Improved System Health checks for supported PHP versions
WHMCS-25243 — Improved usage of customer currency when viewing Invoices from the Admin Area
WHMCS-25258 — Improvements to Digicert SSL expiry handling
WHMCS-25386 — Improved error handling for Activity Logs
WHMCS-24954 — Improved error handling in the Nexus Cart
Modules
WHMCS-25082 — Introduced new Stripe Dynamic Payments Gateway Module var/softaculous/txtpat/changelog.txt 0000644 00000020021 15234670062 0013717 0 ustar 00 Changes in 4.9.1 (14 Feb 2026)
* Maintenance release with security enhancements, general improvements and
bug fixes.
* Security: Resolved access control regression with articles. Many thanks to
Federico Frascino.
* Security: Resolved admin-side XSS vulnerability. Many thanks to
Jan Jeffrie Galvez Salloman, aka '0xj4n'.
* Changed: (Article)Image tags only output dimensions on demand.
* Changed: skips empty images/thumbnails.
* Changed: Valueless width/height/crop behaviour in (Article)Image tags.
* Changed: Thumb path now permits virtual/multiple host setups.
* Changed: Use publisher email and fallback if no/invalid sender is supplied
(thanks, jools-r).
* Fixed: Fatal error with UNIXTIME() changes in MariaDB 11.8+.
* Fixed: Dynamic thumbnail MIME detection (thanks, rezozero/ambroisemaupate).
* Fixed: PHP 5.6 support (thanks, pinalgirkar).
* Fixed: Show template content even if theme is deleted (thanks, Mark Goodwin).
* Fixed: Correct admin theme file scaffold for dynamic thumbnails.
* Fixed: Reintroduce 'No' indicator if thumbnail is missing in Images list
panel (thanks, wet and phiw13).
* Fixed: Duplicate action only available for existing content.
* Fixed: Assets created with no timestamp use time of creation, not Unix epoch.
* Fixed: Internal errors with password reset email sending on PHP 8.5.
* Added: (Article)Image thumbnails can output any supported format.
* Vendors: jQuery UI 1.14.2.
Changes in 4.8.8 (24 January 2022)
* Maintenance release with support for PHP 8.1, security enhancements, general
improvements and bug fixes.
* Security: Fix reported cross-site scripting issue relating to article preview
CSRF token (many thanks, Paul Ritchie at Pentest Limited).
* Fixed: More robust numeric searches.
* Fixed: Improved query efficiency of category operations.
* Fixed: Required parameters after optional in tag builder (thanks, phiw13).
* Fixed: Admin-side pagination when sorting by non-unique values.
* Added: PHP 8.1 support.
* Added: Natural search mode.
* Added: Random form selection.
* Added: Support for AVIF image format, on PHP 8.1 or higher.
* Added: Global 'limit', 'offset' and 'sort' attributes.
* Added: 'url_title' attribute to .
* Added: 'range' attribute to .
* Added: 'date' and 'time' attributes to .
* Added: 'calendar' attribute to and similar tags.
* Added: Substring extraction via 'escape' attribute.
* Added: tag.
* Added: Expanded conditional 'match' attribute with comparison operators.
* Added: 'UTC' is now a permitted time zone.
* Added: Custom date formats.
* Changed: with 'children' >1 attribute behaviour.
* Changed: Global 'escape' attribute operates at the items level in lists.
* Changed: Multi-site plugins directory defaults to site/admin/plugins.
* Accessibility: Additional 'aria-label' attributes for some internal links.
* Internal: Removed FOUND_ROWS() which is deprecated in MySQL 8.0.17.
* Internal: Prefer is_readable() and is_file() to file_exists().
* Developer: Added plugin lifecycle events 'upgraded' and 'downgraded'.
* Developer: Export new article IDs on duplicate.
* PrismJS 1.26.0.
Changes in 4.8.7 (30 May 2021)
* High priority maintenance release to address functionality and setup issues
discovered after 4.8.6 release.
* Fixed: Users panel throws error due to missing DB prefix (thanks, prbt2016).
* Removed: database user GRANT check during initial setup, which broke some
installations.
* Changed: Context check priority in tags.
Changes in 4.8.6 (28 May 2021)
* DO NOT USE IN PRODUCTION - issues discovered after release, use 4.8.7 instead.
* Maintenance release with bug fixes.
* Fixed: Regression in override form usage in lists (thanks, Christian Rapp).
* Fixed: Undefined $article warning when accessing non-existent articles.
* Fixed: Error with tag on empty forms (thanks, Adi).
* Fixed: Low-privilege users can save immediately after duplicating articles.
* Added: Latest text translations. Thank you to all our translators.
* Added: 'id' attribute to tag.
* Added: 'db' option to the global 'escape' attribute.
* Added: Option to create database during setup.
* Added: Permission (grants) verification during setup.
* Changed: 'Assign sections' from Themes panel only selects its own sections.
* Changed: trims its own output (thanks, cara-tm).
* Changed: can return URL or container.
* Changed: and tags are more flexible.
* Changed: Boost power of grouping by date.
* Changed: Articles can be filtered by keywords more easily.
* Changed: No Edit options in Write panel without appropriate privileges.
* Changed: No disabled update buttons on Languages panel (thanks, phiw13).
* Changed: Deprecate . Use instead.
* Changed: Remove deprecated break attribute from search_result_excerpt tag.
* Changed: Back-end search improved when handling numbers. Comparators can
also be used for numeric searches.
* Developer: Permit step=false to hook into explicit empty step callbacks and
step=null to indicate 'any step'.
* Developer: Permit $pre to be any text. Opens up arbitrary callback grouping.
* Developer: New articles>multi_edit.$method callback on Articles list panel.
* Developer: User panel callbacks:
user>fields and user>from to manipulate the query
user>controls to affect the button area
user_ui>list.row (pluggable_ui) for adding table data
user>steps for plugins to register custom panel-level functionality.
* Developer: Diagnostics panel callbacks diag>steps and diag_ui>level for
custom plugin steps.
Changes in 4.8.5 (29 Mar 2021)
* Maintenance release including improvements for PHP 8.0 and bug fixes.
* Changed: attributes are unset by default. Ensure any 'name'
attributes are set before updating to avoid issues with custom headers.
* Fixed: Database connection issue for new installations on PHP 8.0.
* Fixed: libxml_disable_entity_loader() deprecation warning on PHP 8.0.
* Fixed: Undefined array key/offset warnings on PHP 8.0.
* Fixed: System temp directory notice on PHP 8.0.
* Fixed: Custom field ordering on Write panel.
* Fixed: Diagnostics panel strings no longer have 'Help' appended.
* Fixed: Draft/hidden/pending articles output 404 Not Found status as they should.
* Fixed: RSS/Atom feeds display correct titles (thanks, jrmartin).
* Fixed: Form processing on 'pretext_end' callback.
* Added: Support for WebP image format, on PHP 7.1 or higher.
* Added: SSL version verification on Diagnostics panel during update checks.
* Added: Latest text translations. Thank you to all our translators.
* Added: More aggregators in 'fields' attribute.
* Added: Global 'break', 'replace' and 'trim' attributes.
* Added: 'breakby' and 'breakform' attributes for all content types.
* Added: .
* Added: Support for Fulah language translation.
* Added: Locale for en, and improved locale fallbacks.
* Added: Import attributes in as PHP variables.
* Added: 'root' attribute of to create relative URLs.
* Changed: can paginate content using 'pageby' attribute.
* Changed: outputs full-size images if thumbnails don't exist and
displays full-size images as expected.
* Changed: accepts .
* Changed: default attribute can be used during assignment
(thanks, cara-tm).
* Changed: Expose 'secondpass' Advanced pref for testing.
* Changed: Plugin load warning includes version number.
* Changed: Comments off by default on new installations.
* Changed: Diagnostics textarea is rendered fully in English to aid support requests.
* Changed: If allowed, is processed in forms even in article body.
* Changed: Copy Editors are allowed to use in articles.
* Changed: Better i18n handling for 'ago'.
* Developer: New pre-pretext_end callback.
* Developer: New txp.image>types callback.
* PrismJS 1.23.0. var/softaculous/lychee/changelog.txt 0000644 00000013032 15234670161 0013650 0 ustar 00 v7.7.1
Released on July 13th, 2026
Hotfixes
Just when you publish a new release, there is another vulnerability reported… Which means we need to ship a fix ASAP.
fix #4514 : Hotfix on webshop by @ildyria.
A user can craft a post request and get discounted prices on the webshop. This is now fixed.
fix #4516 : Fix Sqlite bug on virtual columns by @ildyria.
When using sqlite, the virtual columns were not properly handled. This is now fixed.
Thanks to @5ud0er for reporting the bypass vulnerability on pricing.
v7.7.0
Released on July 13th, 2026
Fixes vulnerabilities, bugs and adds a few new features
If we were only fixing vulnerabilities, this would have been a simple patch release. However, we also added a few new features and fixed some bugs: you can now choose which thumb to use as the cover for your tag albums, disable the second line on album thumbs (usually a date), and customize the title and description of the RSS feed. We also fixed two major issues related to group access rights and the propagation algorithm.
Users of the webshop should update to this version as soon as possible, as one of the validation mechanisms was not working properly and could allow for some freebies.
new #4469 : Add option to disable the second line on album thumbs by @ildyria.
This is a small quality of life improvement, some users requested to have the second line on album thumbs disabled. This is now possible via a setting in the admin panel.
new #4470 : Add cover to tag albums by @ildyria.
By request, we added the possibility to choose which photo to use as the cover for tag albums. This allows to have a better representation of the tag album.
new #4468 : Make the tags clickable in the photo details by @ildyria.
By request, we made the tags clickable in the photo details. This allows to quickly navigate to the tag album and see all photos with the same tag. Note that this is only available to logged-in users.
new #4484 : Support 2 lines titles on thumbs with disabled second line by @ildyria.
When the second line is disabled, the title of albums will be displayed on two lines if necessary.
new #4501 : Allow customizing RSS feed title & description by @cdzombak.
Our very own @cdzombak added the possibility to customize the title and description of the RSS feed. This allows to have a better representation of the feed in RSS readers.
new #4500 : RSS Feed includes oneper photo by @cdzombak.
new #4503 : Add option to configure cache file path by @ildyria.
A small request, we added the possibility to configure the cache file path. This allows to have a better control on the cache files and avoid potential issues with permissions.
fix #4480 : Update changelog url by @ildyria.
With the migration to astro Starlight, the changelog url was not updated. This is now fixed.
fix #4481 : Fix propagation error by @ildyria.
When propagating access rights to sub-albums we were faced with a combinatory explosion. This is now fixed.
fix #4482 : Fixes access rights with multiple groups by @ildyria.
When a user was part of multiple groups, only the first policy was used to determine the access rights to an album. This is now fixed.
fix #4486 : Fix nsfw warning not being displayed by @ildyria.
When an album is marked as NSFW, the warning was not displayed on the album page. This is now fixed.
fix #4499 : Fix photos appearing multiple times per-album in RSS feed by @cdzombak.
Chris also fixed the duplicates presentation in the RSS feed: one photo in multiple albums will now only appear once in the feed.
fix #4507 : Fix dummy validation when processing requests by @ildyria.
Major vulnerability, @UmutCPP reported that the validation of the requests was not properly done, allowing for some bypasses. This is now fixed.
fix #4510 : Add middleware and caching for docs API by @ildyria.
The docs API takes a few seconds to generates, an attacker could spam the endpoint and cause a denial of service. We added a middleware to cache the response and avoid this issue. Issue reported by @UmutCPP.
fix #4511 : Avoid large malicious uploads and wasting CPU cycles by @ildyria.
A malicious user with upload rights could upload a small pdf and cause the server to waste CPU cycles and memory by converting it to a large image. We now limit the size of the uploaded files and avoid this issue. Issue reported by @UmutCPP.
klo #4489 : Fixes HEIC processing in CICD by @ildyria.
klo #4466 : Improve demo workflow by @ildyria.
klo #4512 : Improve Readme by @ildyria.
klo #4508 : Please do not report fopen DNS rebinding issues by @ildyria.
Thanks to @UmutCPP for reporting those three vulnerabilities.
v7.6.4
What's Changed
🏕 Features
Add missing tile for bulk album edit by @ildyria in #4464
Add configurable sharable preview by @ildyria in #4463
Please don't tell anyone about this commit. It's a secret. by @ildyria in #4465
v7.6.3
What's Changed
🏕 Features
Hardcode sqlite migration key-drop fix by @ildyria in #4458
Fix download bypass on password protected albums by @ildyria in #4459
Version 7.6.3 by @ildyria in #4461
Do not display errors when feature is disabled by @ildyria in #4462
👒 Dependencies
chore(deps-dev): bump rector/rector from 2.5.1 to 2.5.2 in the development-dependencies group by @dependabot[bot] in #4455
chore(deps-dev): bump @typescript-eslint/parser from 8.61.1 to 8.62.0 in the development-dependencies group by @dependabot[bot] in #4454 var/softaculous/yourls/changelog.txt 0000644 00000005054 15234672324 0013744 0 ustar 00 1.10.4
fixed: Prevent XSS in stat pages through referrers (#4107)
added: Localization support for date and time display (#4054)
improved: Improve shunt filters (#4058)
fixed: Notice overlapping logo in admin panel (#4069)
fixed: Flag password file as user auth from environment variables (#4066)
added: Filter SQL queries (#4064)
improved: Improve debug functions and logic (#4089)
improved: Make tests debugging easier (#4104)
1.10.3
added: testing on PHP 8.5 & 8.6 (#4036)
added: function to get reserved URLs from global variable (#3999)
added: database index on long URLs, for faster searches (#4013)
added: $context parameter of yourls_get_db() (#4020)
changed: hide referrers on public statistics page by default (#4005)
changed: set the infos cache of the keyword after a url is added/updated/deleted (#4008)
changed: fix hover-actions in tables for screen reader users (#4025)
changed: confirm link deletion with a modal dialog (#3932)
fixed: upgrade spatie/array-to-xml to address deprecation warnings in newer PHP version (#4037)
fixed: filtering for links with more than 0 clicks (#3977)
fixed: case-sensitivity in admin search (#3997)
fixed: missing or invalid reserved URL configuration causing crash (#3999)
fixed: handling of invalid charsets on remote sites (#4007)
fixed: preserve backslashes in URLs (#4000)
fixed: validate JSONP callback names (#4030)
fixed: enhance configuration template formatting (#3994)
fixed: minor cleanup (#3979, #3984, #3988)
1.10.2
fixed: admin/tools.php now uses yourls_get_nonce_life() (#3906)
fixed: "Display 1 to 0 of 0 URLs" on admin list page (#3910)
fixed: replace deprecated get_all_options filter with an action (#3683)
fixed: defer loading text domain after plugins (#3679)
removed: Gandi references (#3929)
1.10.1
fixed: sandbox exceptions when disabling plugins by @LeoColomb in #3893
fixed: stats date calculation are now correct by @ntindicator in #3895
fixed: unexpected warning raised on login page
removed: unsupported installation cases with Composer
1.10.0
added: Support PHP 8.3 & 8.4
removed: Support for PHP prior to 8.1 which is now minimal requirement
changed: Ensure all statusCode/errorCode API values are strings (#3756)
fixed: Results with 0 clicks on search (#3589)
fixed: Upgrade Aura.SQL to fix PHP 8.4 compatibility (#3852)
fixed: login page accessibility (#3660)
fixed: MySQL 8+ compatibility (#3828)
changed: Upgrade dependencies
changed: Update GeoIP DB
changed: Update certificate var/softaculous/fork/changelog.txt 0000755 00000011744 15234677310 0013356 0 ustar 00 5.12.0 (2023-07-31)
------------------
Fixed:
* Core: Fix redirecting in parseWidget [#3513](https://github.com/forkcms/forkcms/pull/3513)
* Core: Make privacy consent dialog scrollable on mobile [#3507](https://github.com/forkcms/forkcms/pull/3507)
* Core: Make the old session clean-up method timezone aware [#3511](https://github.com/forkcms/forkcms/pull/3511)
* Core: Move the apple touch icon to the theme [#3512](https://github.com/forkcms/forkcms/pull/3512)
* Pages: Allow the use of install in a page title [#3533](https://github.com/forkcms/forkcms/pull/3533)
* Pages: Skip empty images while copying a page [#3545](https://github.com/forkcms/forkcms/pull/3545)
Security:
* Core: Fix Open Redirect issue [#3547](https://github.com/forkcms/forkcms/pull/3547)
Added:
* CLI: Reset password CLI command [#3491](https://github.com/forkcms/forkcms/pull/3491)
* Profiles: Autocomplete attributes [#3508](https://github.com/forkcms/forkcms/pull/3508)[#3548](https://github.com/forkcms/forkcms/pull/3548)
Changed:
* Core: Added PHP8 support and bumped minimum to 7.4 [#3538](https://github.com/forkcms/forkcms/pull/3538)
* Core: Switched to symfony 4.4 [#3538](https://github.com/forkcms/forkcms/pull/3538)
5.11.1 (2022-03-24)
Fixed:
Core: Add missing aria attributes on form errors #3485
Core: Fix adding links on images in ckeditor #3478
Core: Fix database env variables not resolving before checking installed module #3502
Core: Update packages #3500 #3482 #3483 #3489 #3490 #3492
Blog: Fix translation in wordpress import page #3484
Pages: Fix default breadcrumb style #3487
Security:
All these security issues require access to the backend before they can be exploited.
Core: Fix xss bug in multiple select box #3501
Authentication: Intercept a redirect to a different domain on login using // at the start of the queryparameter #3494
Authentication: Reauthenticate a user after password change to log out other sessions #3493
Blog: Prevent sql injection in the backend through bulk action marking comments as spam #3497
Extensions: Prevent xss in the backend in the theme and module detail page through the description #3499
FormBuilder: Prevent sql injection in the backend through bulk deletion of submitted data #3495
Locale: Prevent sql injection in the backend through export of translations #3498
Tags: Prevent sql injection in the backend through bulk deletion of tags #3496
5.11.0 (2021-10-14)
Fixed:
Core: Fix array offset error for canonical url in meta #3411
Core: Fix deleting cookies #3440
Core: Fix encoding problem with generating urls #3429
Core: Fixed GenarteUrl to allow Backend Locale #3423
Core: Update packages #3452 #3447 #3448 #3451 #3435 #3437 #3439 #3408 #3427 #3469 #3467 #3465 #3462 #3461 #3459
Core: Update the placeholder image URLs #3463
ContentBlocks: Fix mapping old content blocks when copying pages #3442
Docs: Put code in code block #3407
Docs: Update old screenshots #3210 #3412
Locale: Fixed exporting XML truncated by a few bytes
Locale: Fixed truncated locale XML export #3470
MediaLibrary: Fix image preview #3434
MediaLibrary: Fix item preview in the editor #3450
Page: Duplicate page image when copying a page to a different locale #3438
Pages: Revert usertemplates fix since it is broken because of the nex security fixes #3460
Search: Fix search total for short terms #3441
Security:
Core: Fix xss issue in spoon form #3453
Core: Prevent CSRF logout in the backend #3471
Core: SpoonLibrary expects the charset to be in lowercase, otherwise some xss protections fail #3455
MediaLibrary: Fix xss in mediaitem type movie id on edit #3406
Added:
Core: Add support for Google reCAPTCHA v3 #3409
FormBuilder: Copy forms and their widgets when making a language copy #3445
MediaLibrary: Add support for svg #3424 #3432
Changed:
DX: Only run tests once on PR #3468
Test: Minor database optimalisation #3443
5.10.0 (2021-05-16)
Fixed:
Core: Fix double encoding in spoon library #3400
Core: Fix files not loading on some apache servers #3361
Core: Update packages #3398 #3394 #3386 #3385 #3382 #3364
Blog: Fix broken thumbnail in the backend #3360
Pages: Fix usertemplates #3371 #3365
Security:
Authentication: Fix xss in redirect url #3355 #3353
MediaLibrary: Fix xss in media item title #3401
MediaLibrary: Fix xss in video ids #3402
Search: Fix xss in search referrer #3387
Spoon: Fix xss in form input files #3357
Added:
Core: Add canonical URL to SEO tab #3188
Core: Add CLI command to install a module #3323
Core: Throw an event when the session id changes #3377
MediaLibrary: Add edit button to media item within a form #3192
MediaLibrary: Added a search box to the media library #3189
Pages: Make it possible to set an id in a usertemplate #3166
Changed:
Core: Improve GDPR consent dialog #3372
Github: No codecov annotations in PR's #3378
Github: Upgrade to native dependabot #3384
var/softaculous/epesi/changelog.txt 0000644 00000013535 15234715636 0013523 0 ustar 00 EPESI CHANGELOG
===============
(Dev) means that this change is significant only for developers.
RELEASE 1.8.2-20180413
----------------------
### Fixed
- Error: "Undefined index: name" in dashboard
- BBcode display
- watchdog applet caused epesi error
### Feature
- Double clock
- HTML5 Notification
- rebuild:all command
- remove:all command
- create test module command
- possibility to set tooltip for leightbox buttons
- TCPDF from composer (dev)
RELEASE 1.8.2-20171019
----------------------
### Fixed
- fixed to use openssl if mcrypt is not loaded
- fixed charset exporting
- fixed XSS vulnerabilities in Attachments, Meetings, Calendar, Perspective - display
- added XSS purifier on recordset update
### Feature
- added phpmoney library
RELEASE 1.8.2-20170830
----------------------
### Fixed
- notes file leightbox in display and view
- avoid error on deleting page splits (georgehristov)
### Feature
- Access class for RecordBrowser (georgehristov)
- set caption for recordbrowser (georgehristov)
- menu caching (georgehristov)
- allow access for recursive permissions if set to empty (georgehristov)
RELEASE 1.8.2-20170826
----------------------
### Fixed
- sql error in commondata
- copy patch for csv export params array to commondata to RB install
- csv exporting ascii translation
- get old link if exists for attachments
- sorting menu error if non array passed
- limit xss protection to utils_attachment
- add xss protection for notes in view and history mode
- check if mod_rewrite supported for RC multiwin support
### Feature
- set watchdog applet title for better segregation
- file field email actionbar in leightbox
RELEASE 1.8.2-20170730
----------------------
### Fixed
- fixed notes displaying html tags
- added safe html class for clearing html from xss
- introduced htmlpurifier to safe html class
- fixed roundcube long sorting by date by changing to arrival
RELEASE 1.8.2-20170701
----------------------
### Fixed
- column visibility if no records (georgehristov)
- invalid "from" header in mails from epesi, missing name before email address
- timeless tasks deadline
- fixed xss vulnerabilities
- file attachments display (georgehristov)
- properly display overflow for dropzone file field (georgehristov)
- quickjump error
- avoid exception and display missing file text in case file hash not found
- fixed quick new records
### Changed
- enable adding help with installation of field (georgehristov)
- execute in order of module priority (georgehristov)
- pass tab as argument on processing callback (georgehristov)
RELEASE 1.8.2-20170430
----------------------
### Added
- File field available in RB
- Files panel for administrator
- Codeception for unit testing (Dev)
- Psy shell (Dev)
- Console command to create patch (Dev)
### Fixed
- Allow attachments to be encrypted using openssl if mcrypt not installed (Dev)
- Notice for non well formated numeric values on php >= 7.0 (Dev)
- Using $this in non object on php >= 7.0 (Dev)
- Block cross-origin framing (Dev)
- Watchdog notify employees about phone calls
- Date display for empty value
- RB filter issue after refresh (Dev)
- Block the view of the record during add
- Issue with crits validation
- Update composer.json to work on windows (Dev)
- Checking add crits - restore original behavior
- Update get_element_by_array callback type - call with reference as argument (Dev)
- JS currency calculation method - issue occured when value was smaller than 0.1
- Update watchdog record access
- Update update_access - ignore 'grant' and 'restrict' ids - throw exception on non numeric id (Dev)
- Extend login audit hostname col length
- Description fields to allow use comma in quoted string
- Check if method exists in update.php script - for older versions of epesi (Dev)
- Renaming fields without DB entries (georgehristov)
- Add possibility to open multiple roundcube accounts
- Logged out user was still in the whoisonline applet
- Set default cache ttl to 24h (Dev)
- Quickjump feature (Dev)
- Improve RB search code (Dev)
- Commondata crits - return empty set if records not matched
- Set tray filters with fixed RB method
- Allow to override saved filter values
- Quickform row/column display templates
- Module create command - add version method to install (Dev)
- Session locking issue (Dev)
- Do not require linked fields in RBO select field (Dev)
- Module uninstall console command - fix messages (Dev)
- Display users online count (georgehristov)
- Next CSV export modification based on AJB comments (praski)
- Crits validation - add preg_quote
- Display callbacks with PHP code not working (Dev)
- QFfield callback with PHP code embedded calling (Dev)
- Issue with bbcode when callback is not callable (Dev)
- Issue with calendar when module with event handler has been disabled
- Set order of watchdog notifications
### Changed
- Filestorage and db structure has been refactored (Dev)
- Fileupload has been refactored - added Dropzone (Dev)
- Attachments patch for new filestorage (Dev)
- Update PHPExcel library (Dev)
- Remove json encode/decode service lib (Dev)
- Enable for custom field_id different than field name (georgehristov)
- Use custom class to detect if field is auto-hidden (georgehristov)
- Enable for custom icons not related to the parent module
- Allow to use like special characters in commondata crits (Dev)
- Establish get_mime_type as static method (georgehristov)
- Introduce the "more" option to linked_label and linked_text (georgehristov)
- Improve field access selection (georgehristov)
- Load all similar tooltips at the same time (georgehristov)
- Change method of tooltip_id generation (georgehristov)
### Important
Since adding the new file field to RB utils_filestorage and utils_fileupload have been heavily refactored .
Any module that has been using them might have to write a patch to work with this update.
I.e. Utils_FilestorageCommon::meta accepts the id from the new utils_filestorage table.
var/softaculous/thelia/changelog.txt 0000755 00000012137 15234720211 0013645 0 ustar 00 2.6.0 Latest
#3369 Feat: remove stack docker
#3368 chore: remove deprecated CI/CD workflow configuration
#3367 Fixes scrutinizer issues
#3364 Prepare Thelia version 2.5.5 to 2.6.0
#3363 fix: add umask permission in FileManager + improve session handling in TokenProvider
#3362 feat: add symfony/monolog-bundle to composer.json
#3360 fix: update composer.json to require Symfony 6.4 and allow contributions
#3359 Fix argument set to null if empty('')
#3358 Fix precedence of event variable values
#3357 Fix test for pasting as text
#3349 Adding default rules for Apache mod_brotli
#3348 Bump axios from 1.7.4 to 1.12.0 in /templates/frontOffice/modern
#3340 Update Readme.md
#3339 Bump tmp from 0.2.1 to 0.2.4 in /templates/frontOffice/modern
#3337 Api Platform
#3336 fix: remove force error reporting
#3334 Update CouponManager.php
#3332 Bump form-data from 4.0.0 to 4.0.4 in /templates/frontOffice/modern
#3326 Fix missing delivery module in insert.sql.tpl
#3316 Update search.html
#3315 Image data is no longer always returned in an ImageEvent
#3314 Update OrderProduct.php
#3312 Bump http-proxy-middleware from 2.0.7 to 2.0.9 in /templates/frontOffice/modern
#3310 Clone function issue
#3309 Update orders.html
#3308 Bump @babel/runtime-corejs3 from 7.19.0 to 7.26.10 in /templates/frontOffice/modern
#3307 Bump @babel/helpers from 7.22.10 to 7.26.10 in /templates/frontOffice/modern
#3305 An admin not logged in to the BO is redirected to the requested page after logging in
#3304 Fix/array search loop pagination
#3303 Fix/GitHub api call
#3302 Uses actions/cache@v4 instead of v2
#3296 Give the possibility to modify the PDF filename
#3295 Bump serialize-javascript from 6.0.0 to 6.0.2 in /templates/frontOffice/modern
#3268 Prepare Thelia version 2.5.4 to 2.5.5
#3267 Fix wrong .env location in TinyMCE filemanager config
2.5.5
#3267 Fix wrong .env location in TinyMCE filemanager config
#3263 fix: better get current locale
#3261 Bump cross-spawn from 7.0.3 to 7.0.6 in /templates/frontOffice/modern
#3258 fix : alt and title in image
#3254 Bump http-proxy-middleware from 2.0.6 to 2.0.7 in /templates/frontOffice/modern
#3249 feat(ci): use git deploy
#3248 fix(ci): preprod only on main
#3247 Bump express from 4.19.2 to 4.21.0 in /templates/frontOffice/modern
#3246 Bump axios from 1.1.3 to 1.7.4 in /templates/frontOffice/modern
#3245 feat(ci): put in place ci
#3242 Fixed rounding in taxes and taxed prices caclulation
#3241 autofill contact form if user is a customer
#3240 Fix/lang url
#3230 forgot a rounding
#3228 fix : rounding in cart and order
#3226 Fix attributes and path commerce guys address
#3221 Feat/payment modules
#3220 Count in admin
#3218 Fix Export product TTC
#3214 Feat: add php Thelia loop:info command
#3213 Show menu bar option
#3212 Allow feature free text value to be set to 0
#3208 Give the possibility to modify the PDF filename
#3205 Update order-edit.html
#3201 Fix a wrong loop instantiation (new + init instread of new)
#3200 Update utils.php
#3199 Fix uploaded file mode
#3198 fix: image source in content card
#3196 Bump express from 4.18.2 to 4.19.2 in /templates/frontOffice/modern
#3195 Update CustomerController.php
#3194 Update BaseCachedFile.php
#3193 Update FolderBreadcrumbTrait.php
#3192 Update CatalogBreadcrumbTrait.php
#3191 Update CatalogBreadcrumbTrait.php
#3189 Update FeatureAvController.php
#3188 Update Product.php
#3187 Bump webpack-dev-middleware from 5.3.3 to 5.3.4 in /templates/frontOffice/modern
#3186 Fix Bo pse attribute value display when product doesn't have template
#3185 Bump follow-redirects from 1.15.2 to 1.15.6 in /templates/frontOffice/modern
#3183 Fix bad "setContainer" call on Symfony AbstractController
#3182 Adding products & sub categories count by categorie
#3179 Allow to modify pse from psesByProduct plugin by event
#3175 Add symfony debug bunudle
#3174 Fix inverted condition in ProductTaxedPricesExport
#3173 Update BaseHook.php
#3171 Fix order event not being dispatched if previous dispatch stop propagation
#3170 Fix bad select values for coupon who remove postage
#3169 fix: change default tttl for apache mod_expires
#3159 Update categories.html
#3158 DockerFile: Php image changed to php:8.2-fpm-alpine
#3155 Mon Profil > Mon profil
#3154 Adding Taiwan SQL
#3153 Adding Taiwan locale
#3147 Bump semver from 5.7.1 to 5.7.2 in /templates/frontOffice/modern
#3146 Bump word-wrap from 1.2.3 to 1.2.5 in /templates/frontOffice/modern
2.5.4
#3145 Feat Change Thelia version 2.5.3 to 2.5.4
#3137 Fix translations countries
#3134 Fix missing routing parent call
#3129 Fix TinyMce file upload
#3128 Fix backoffice breadcrumb for depth > 1
#3126 Feat Add array key on loop result add row method
#3122 Fix error message in preview mail
#3121 Feat Update webpack.config.js
#3120 Fix external-schema path in cached model generation
#3118 Fix docker root user
#3080 Feat Add encore_entry_preload_script_tags smarty function
var/softaculous/schlix/changelog.txt 0000644 00000034423 15234721251 0013675 0 ustar 00 Release note (2026 July 23)
v2.2.9
Errata #8 (July 23, 2026): v2.2.9-8. Fixed sitemap regeneration.
Errata #7 (July 2, 2026): v2.2.9-7. Fixed theme config page (only for new themes after July 2026+), Contacts app - new field "Service Area" and Custom Map Embed Code (copy & paste from Google Business Profile). Fixed Sitemap weekly/monthly frequency.
Errata #6 (June 2, 2026): v2.2.9-6. Fixed gallery duplicate file insertion, datetime picker minimum width, installer error, updated schema.org for Contacts, fixed Block Manager - menu item visibility
Errata #5 (Dec 2, 2025): v2.2.9-5. Fixed gallery viewer not including the correct CSS, corrected User application that display history when clicking new item, fixed XSS vulnerability bug when clicking New User (thank you to Akiner K who reported this security bug and provided reasonable time to fix)
Errata #4 (Aug 11, 2025): v2.2.9-4. Fixed invalid redirect
Errata #3 (July 25, 2025): v2.2.9-3. Added initial support for Bootstrap 5 CSS framework (still defaults to Bootstrap 4 for the time being), fixed more errors in PHP8.4, fixed incorrect custom header image display for Blog app, HTML (Web Pages) app will redirect to the frontpage if the first index page is called when the app is not the main frontpage application, fixed minor issues in default themes, fixed frontend edit control not loading if the main frontpage application is set to Landing Page, fixed Google Analytics block module, fixed menu generation for divider and parent submenu, removed "php_flag short_open_tag off" from the default .htaccess file as it causes errors on some web server under certain configuration.
Errata #2 (June 10, 2025): More PHP8.4 fixes, updated FontAwesome 5 Free to 6 Free, fixed cookie issue if the CMS runs on non-standard port 80/443
While SCHLIX CMS is currently still backward compatible with PHP 5.6 (which already reached its end of life in 2018), due to the changes in the recently released PHP 8.4, backward compatibility with PHP 5.6 may no longer be guaranteed next year.
PHP 8.4 compatibility fix #1 session handler add ReturnTypeWillChange while maintaining PHP 5.6 backward compatibility as session_set_save_handler() with more than two arguments are deprecated
PHP 8.4 compatibility fix #2: Implicitly nullable parameter declarations deprecated in skins library
Fixed - minor issue with search box type (button vs submit)
Updated - Mesage for database error handling
Updated - Added "php_flag short_open_tag off" in .htaccess
Updated - PHPMailer 6.7.1 to v6.9.3
Updated - HTMLPurifier 4.15 to v4.18
Updated - jstz 1.0.6 to v2.1.1
Updated - Composer 1.10 to v2.20.25 (LTS). Tested on PHP 8.4 as well with E_DEPRECATED silenced.
Updated - Bootstrap 4.6.2 to 4.6.3 with our own custom fixes.
Updated - Bootstrap 3.4.1 to 3.4.6 with fixes from 7pro.ca.
Release note (2026 July 01)
v2.2.9
Errata #7 (July 2, 2026): v2.2.9-6. Fixed theme config page (only for new themes after July 2026+), Contacts app - new field "Service Area" and Custom Map Embed Code (copy & paste from Google Business Profile). Fixed Sitemap weekly/monthly frequency.
Errata #6 (June 2, 2026): v2.2.9-6. Fixed gallery duplicate file insertion, datetime picker minimum width, installer error, updated schema.org for Contacts, fixed Block Manager - menu item visibility
Errata #5 (Dec 2, 2025): v2.2.9-5. Fixed gallery viewer not including the correct CSS, corrected User application that display history when clicking new item, fixed XSS vulnerability bug when clicking New User (thank you to Akiner K who reported this security bug and provided reasonable time to fix)
Errata #4 (Aug 11, 2025): v2.2.9-4. Fixed invalid redirect
Errata #3 (July 25, 2025): v2.2.9-3. Added initial support for Bootstrap 5 CSS framework (still defaults to Bootstrap 4 for the time being), fixed more errors in PHP8.4, fixed incorrect custom header image display for Blog app, HTML (Web Pages) app will redirect to the frontpage if the first index page is called when the app is not the main frontpage application, fixed minor issues in default themes, fixed frontend edit control not loading if the main frontpage application is set to Landing Page, fixed Google Analytics block module, fixed menu generation for divider and parent submenu, removed "php_flag short_open_tag off" from the default .htaccess file as it causes errors on some web server under certain configuration.
Errata #2 (June 10, 2025): More PHP8.4 fixes, updated FontAwesome 5 Free to 6 Free, fixed cookie issue if the CMS runs on non-standard port 80/443
While SCHLIX CMS is currently still backward compatible with PHP 5.6 (which already reached its end of life in 2018), due to the changes in the recently released PHP 8.4, backward compatibility with PHP 5.6 may no longer be guaranteed next year.
PHP 8.4 compatibility fix #1 session handler add ReturnTypeWillChange while maintaining PHP 5.6 backward compatibility as session_set_save_handler() with more than two arguments are deprecated
PHP 8.4 compatibility fix #2: Implicitly nullable parameter declarations deprecated in skins library
Fixed - minor issue with search box type (button vs submit)
Updated - Mesage for database error handling
Updated - Added "php_flag short_open_tag off" in .htaccess
Updated - PHPMailer 6.7.1 to v6.9.3
Updated - HTMLPurifier 4.15 to v4.18
Updated - jstz 1.0.6 to v2.1.1
Updated - Composer 1.10 to v2.20.25 (LTS). Tested on PHP 8.4 as well with E_DEPRECATED silenced.
Updated - Bootstrap 4.6.2 to 4.6.3 with our own custom fixes.
Updated - Bootstrap 3.4.1 to 3.4.6 with fixes from 7pro.ca.
Release note (2026 June 02)
v2.2.9
Errata #6 (June 2, 2026): v2.2.9-6. Fixed gallery duplicate file insertion, datetime picker minimum width, installer error, updated schema.org for Contacts, fixed Block Manager - menu item visibility
Errata #5 (Dec 2, 2025): v2.2.9-5. Fixed gallery viewer not including the correct CSS, corrected User application that display history when clicking new item, fixed XSS vulnerability bug when clicking New User (thank you to Akiner K who reported this security bug and provided reasonable time to fix)
Errata #4 (Aug 11, 2025): v2.2.9-4. Fixed invalid redirect
Errata #3 (July 25, 2025): v2.2.9-3. Added initial support for Bootstrap 5 CSS framework (still defaults to Bootstrap 4 for the time being), fixed more errors in PHP8.4, fixed incorrect custom header image display for Blog app, HTML (Web Pages) app will redirect to the frontpage if the first index page is called when the app is not the main frontpage application, fixed minor issues in default themes, fixed frontend edit control not loading if the main frontpage application is set to Landing Page, fixed Google Analytics block module, fixed menu generation for divider and parent submenu, removed "php_flag short_open_tag off" from the default .htaccess file as it causes errors on some web server under certain configuration.
Errata #2 (June 10, 2025): More PHP8.4 fixes, updated FontAwesome 5 Free to 6 Free, fixed cookie issue if the CMS runs on non-standard port 80/443
While SCHLIX CMS is currently still backward compatible with PHP 5.6 (which already reached its end of life in 2018), due to the changes in the recently released PHP 8.4, backward compatibility with PHP 5.6 may no longer be guaranteed next year.
PHP 8.4 compatibility fix #1 session handler add ReturnTypeWillChange while maintaining PHP 5.6 backward compatibility as session_set_save_handler() with more than two arguments are deprecated
PHP 8.4 compatibility fix #2: Implicitly nullable parameter declarations deprecated in skins library
Fixed - minor issue with search box type (button vs submit)
Updated - Mesage for database error handling
Updated - Added "php_flag short_open_tag off" in .htaccess
Updated - PHPMailer 6.7.1 to v6.9.3
Updated - HTMLPurifier 4.15 to v4.18
Updated - jstz 1.0.6 to v2.1.1
Updated - Composer 1.10 to v2.20.25 (LTS). Tested on PHP 8.4 as well with E_DEPRECATED silenced.
Updated - Bootstrap 4.6.2 to 4.6.3 with our own custom fixes.
Updated - Bootstrap 3.4.1 to 3.4.6 with fixes from 7pro.ca.
Release note (2025 December 02)
v2.2.9
Errata #5 (Dec 2, 2025): v2.2.9-5. Fixed gallery viewer not including the correct CSS, corrected User application that display history when clicking new item, fixed XSS vulnerability bug when clicking New User (thank you to Akiner K who reported this security bug and provided reasonable time to fix)
Errata #4 (Aug 11, 2025): v2.2.9-4. Fixed invalid redirect
Errata #3 (July 25, 2025): v2.2.9-3. Added initial support for Bootstrap 5 CSS framework (still defaults to Bootstrap 4 for the time being), fixed more errors in PHP8.4, fixed incorrect custom header image display for Blog app, HTML (Web Pages) app will redirect to the frontpage if the first index page is called when the app is not the main frontpage application, fixed minor issues in default themes, fixed frontend edit control not loading if the main frontpage application is set to Landing Page, fixed Google Analytics block module, fixed menu generation for divider and parent submenu, removed "php_flag short_open_tag off" from the default .htaccess file as it causes errors on some web server under certain configuration.
Errata #2 (June 10, 2025): More PHP8.4 fixes, updated FontAwesome 5 Free to 6 Free, fixed cookie issue if the CMS runs on non-standard port 80/443
While SCHLIX CMS is currently still backward compatible with PHP 5.6 (which already reached its end of life in 2018), due to the changes in the recently released PHP 8.4, backward compatibility with PHP 5.6 may no longer be guaranteed next year.
PHP 8.4 compatibility fix #1 session handler add ReturnTypeWillChange while maintaining PHP 5.6 backward compatibility as session_set_save_handler() with more than two arguments are deprecated
PHP 8.4 compatibility fix #2: Implicitly nullable parameter declarations deprecated in skins library
Fixed - minor issue with search box type (button vs submit)
Updated - Mesage for database error handling
Updated - Added "php_flag short_open_tag off" in .htaccess
Updated - PHPMailer 6.7.1 to v6.9.3
Updated - HTMLPurifier 4.15 to v4.18
Updated - jstz 1.0.6 to v2.1.1
Updated - Composer 1.10 to v2.20.25 (LTS). Tested on PHP 8.4 as well with E_DEPRECATED silenced.
Updated - Bootstrap 4.6.2 to 4.6.3 with our own custom fixes.
Updated - Bootstrap 3.4.1 to 3.4.6 with fixes from 7pro.ca.
Release note (2025 August 11)
v2.2.9
Errata #4 (Aug 11, 2025): v2.2.9-4. Fixed invalid redirect
Errata #3 (July 25, 2025): v2.2.9-3. Added initial support for Bootstrap 5 CSS framework (still defaults to Bootstrap 4 for the time being), fixed more errors in PHP8.4, fixed incorrect custom header image display for Blog app, HTML (Web Pages) app will redirect to the frontpage if the first index page is called when the app is not the main frontpage application, fixed minor issues in default themes, fixed frontend edit control not loading if the main frontpage application is set to Landing Page, fixed Google Analytics block module, fixed menu generation for divider and parent submenu, removed "php_flag short_open_tag off" from the default .htaccess file as it causes errors on some web server under certain configuration.
Errata #2 (June 10, 2025): More PHP8.4 fixes, updated FontAwesome 5 Free to 6 Free, fixed cookie issue if the CMS runs on non-standard port 80/443
While SCHLIX CMS is currently still backward compatible with PHP 5.6 (which already reached its end of life in 2018), due to the changes in the recently released PHP 8.4, backward compatibility with PHP 5.6 may no longer be guaranteed next year.
PHP 8.4 compatibility fix #1 session handler add ReturnTypeWillChange while maintaining PHP 5.6 backward compatibility as session_set_save_handler() with more than two arguments are deprecated
PHP 8.4 compatibility fix #2: Implicitly nullable parameter declarations deprecated in skins library
Fixed - minor issue with search box type (button vs submit)
Updated - Mesage for database error handling
Updated - Added "php_flag short_open_tag off" in .htaccess
Updated - PHPMailer 6.7.1 to v6.9.3
Updated - HTMLPurifier 4.15 to v4.18
Updated - jstz 1.0.6 to v2.1.1
Updated - Composer 1.10 to v2.20.25 (LTS). Tested on PHP 8.4 as well with E_DEPRECATED silenced.
Updated - Bootstrap 4.6.2 to 4.6.3 with our own custom fixes.
Updated - Bootstrap 3.4.1 to 3.4.6 with fixes from 7pro.ca.
Release note (2025 March 17)
v2.2.9
Errata #3 (July 25, 2025): v2.2.9-3. Added initial support for Bootstrap 5 CSS framework (still defaults to Bootstrap 4 for the time being), fixed more errors in PHP8.4, fixed incorrect custom header image display for Blog app, HTML (Web Pages) app will redirect to the frontpage if the first index page is called when the app is not the main frontpage application, fixed minor issues in default themes, fixed frontend edit control not loading if the main frontpage application is set to Landing Page, fixed Google Analytics block module, fixed menu generation for divider and parent submenu, removed "php_flag short_open_tag off" from the default .htaccess file as it causes errors on some web server under certain configuration.
Errata #2 (June 10, 2025): More PHP8.4 fixes, updated FontAwesome 5 Free to 6 Free, fixed cookie issue if the CMS runs on non-standard port 80/443
While SCHLIX CMS is currently still backward compatible with PHP 5.6 (which already reached its end of life in 2018), due to the changes in the recently released PHP 8.4, backward compatibility with PHP 5.6 may no longer be guaranteed next year.
PHP 8.4 compatibility fix #1 session handler add ReturnTypeWillChange while maintaining PHP 5.6 backward compatibility as session_set_save_handler() with more than two arguments are deprecated
PHP 8.4 compatibility fix #2: Implicitly nullable parameter declarations deprecated in skins library
Fixed - minor issue with search box type (button vs submit)
Updated - Mesage for database error handling
Updated - Added "php_flag short_open_tag off" in .htaccess
Updated - PHPMailer 6.7.1 to v6.9.3
Updated - HTMLPurifier 4.15 to v4.18
Updated - jstz 1.0.6 to v2.1.1
Updated - Composer 1.10 to v2.20.25 (LTS). Tested on PHP 8.4 as well with E_DEPRECATED silenced.
Updated - Bootstrap 4.6.2 to 4.6.3 with our own custom fixes.
Updated - Bootstrap 3.4.1 to 3.4.6 with fixes from 7pro.ca. var/softaculous/modx/changelog.txt 0000644 00000010453 15234721750 0013353 0 ustar 00 MODX Revolution 3.2.3-pl (July 21, 2026)
====================================
- Validate cultureKey before storing it as a config placeholder
MODX Revolution 3.2.2-pl (July 7, 2026)
====================================
- Add checkbox style to Add Property Set window (#16883)
- Respect skipFormatDates when sent as string from JS (#16888)
- Use FQCN in modResource and modUser (#16919)
- Fix template previews when installed in subdirectory (#16889)
- Remove unused code (#16961)
- Fix image issue in manager email template (#16953)
- Improvements to package installer styling (#16952)
- FIx display of readme/changelog/license in Package Manager (#16829)
- Remove E_STRICT error handling (#16965)
- Fix typo in download success message (#16956)
- Fix modInputFilter root-level backticks in modifier values (#16957)
- JS code quality, modernization for tree, elements, and resources (#16963)
MODX Revolution 3.2.1-pl (May 13, 2026)
====================================
- Catch failure checking S3 file visibility (#16940)
- Register Smarty date modifier to avoid deprecation warning (#16842)
- Increase drag-n-drop image visibility in package manager (#16899)
- Fix package metadata format (#16911)
- Fix PHP warning: Undefined array key "updateable" (#16935)
- Fix PHP warning: Undefined variable $image (#16933)
- Fix Issue with Extras Installation/Updates (#16950)
- Add AI contribution policy and update contributor governance files (#16944)
- Fix grunt build for arm64 and add missing grunt build asset from #16831 (#16949)
- Fix quotes breaking grid js (#16831)
- Add SECURITY.md (#16939)
- Clarify label and description for user_prevlogin lexicon entry (#16846)
- Update README badges layout and add Version badge (#16868)
- Improve PHP version error message in bootstrap (#16922)
- Only call exif_read_data for JPEG/TIFF (#16903)
- Update welcome_screen_url for 3.2 (#16913)
- Change getVersionData() to use include instead of include_once (#16840)
MODX Revolution 3.2.0-pl (February 17, 2026)
====================================
- Fix Resource Preview Functionality (#16777)
- Fix fatal error in trim output filter (#16757)
- Disallow Dot Character in Resource Alias for Alpha/Alphanumeric Restrictions (#16774)
- Fix and Enhance Resource Groups Functionality (#16773)
- Fix sorting logic in Security/Group/GetList.php (#16810)
- Fix memory_limit calculation in modTransportPackage (#16820)
- Resolve various deprecation warnings (#16816)
- Fix TV render sizing for non-TV panels (#16819)
- Mobile layout improvements to main nav & vertical tab panels (#16814)
- Fix and enhance checkbox and radio TV rendering (#16782)
- Fix Media Browser Sorting by Modification Date (#16772)
- Reveal Content Above & Below Regions in Form Customization (#16789)
- Fix non-existent snippet tags broken up by @ (#16682)
- Editor grids permissions refactor, enhancements, and fixes (#16653)
- Improve manager forgot login email error message (#16807)
- Fix expired session login dialog (#16806)
- Add generic return type to Container::get PHPDoc (#16808)
- Return skipExtensions directly instead of exploding (#16799)
- Ensure left bar trigger and collapsed state stay in sync (#16748)
- Bump minimum PHP requirement to 8.1 (#16802)
- Fix improper error message sanitization added in #16792 (#16798)
- Resource Tree Icons Adjustment and Contrast Increase (#16761)
- Increase default minimum and generated passsword lengths (#16796)
- Fix z-index issue in the menu (#16778)
- Add missing validation and lexicon for Roles (#16788)
- Fix undefined variable error in modTemplateVar (#16780)
- Filter special characters in error messages (#16792)
- PHP 8.5 Compatibility (#16794)
- Add settings for inline styles in modPHPMailer (#16791)
- Remove JSONP callback support in modConnectorResponse (#16775)
- Fix Textarea TV Input Options (#16747)
- Fix mail reset method call in modUser.php (#16781)
- Make modNamespace's translatePath method null-safe (#16763)
- Improve handling of visibility in S3 (#16735)
- Fix Media Browser Sorting by Modification Date (#16734)
- Avoid fatal error when Rest request fails in Package Browser (#16738)
- Register missing PSR interfaces to services (#16696)
- Make regClientScript and regClientHTMLBlock work in the manager (#16700)
- Update checkout and setup-node actions in assets workflow (#16737)
- Make all JS files editable in the MODX manager in PHP 8.4 (#16732) var/softaculous/prado/changelog.txt 0000644 00000024103 15234723614 0013507 0 ustar 00 ## Version 4.3.1 - May 21, 2025
ENH: Issue #993 - Added TDatePicker::DropDownCssClass to apply a class to all the dropdowns
ENH: Issue #997 - Nginx fixes to run appliaction in subfolder
ENH: Issue #998 - Replace Exception by Throwable to catch eval ParseError and Error.
ENH: Issue #1002 - Add THttpSessionhandler to avoid use of deprecated session_set_save_handler() ctor
ENH: Migrate functional tests from phpunit-selenium to php-webdriver
ENH: Php 8.4 compatibility: limit use of deprecated SID and E_STRICT constants
ENH: Php 8.4 compatibility: use explicit nullable type
ENH: Php 8.2 compatibility:remove deprecated usage of dynamic defined properties in TActiveRecord
BUG: Avoid recursive error while reporting an error and the source file can't be loaded
## Version 4.3.0 - October 26, 2023
ENH: Issues #824, #838, #851, #891, #910, #917 - General Behaviors Update: Cloning and Serializing supports behaviors. IBaseBehavior has init($config) method. TClassBehavior tracks their owners. Behaviors attach their registered event handlers at the behavior priority. Registered Behavior event can optionally attached and detached automatically when the behavior is enabled or disabled (default). Behavior events() support Closures. IBehavior are attachable class-wide by cloning. Behaviors for behaviors has better support. Behaviors are case insensitive. Supports Anonymous (unnamed/numeric) behaviors. Wakeup updates the component behaviors with new named class behaviors. (belisoful)
BUG: Issue #843 - Permissions Manager behaviors rename the method 'getManager' to 'getPermissionsManager' for specificity. (belisoful)
ENH: Issue #845 - PHP Clone and Unserialize of TComponent objects supports behaviors. (belisoful)
ENH: Issue #848 - TComponent events support Closure (anonymous functions) as handlers. (belisoful)
ENH: Issue #861 - TWebColors lists all the Web Colors in a TEnumerable and implements TPropertyValue::ensureHexColor (belisoful)
ENH: Issue #886 - Lists the 1st level traits of the class and its parents in TComponent::getClassHierarchy. Class-wide behaviors support attaching to Traits as well as interfaces, classes, and their parents. (belisoful)
ENH: Issue #904 - TRational and TURational for reading, writing, and computing EXIF-Tiff (GPS) Rational and URational unit types; in Prado\Util\Math. (belisoful)
BUG: Issue #911 - Protect the message cache file to be thread safe. (majuca)
ENH: Issue #939 - TEventHandler for embedding data with a specific event handler callable. (belisoful)
ENH: Issue #944 - TExitException for gracefully exiting the application anywhere. Exception chaining with the last parameter being the previous Exception. (belisoful)
ENH: Issue #979 - TComponent::raiseEvent optionally execute handlers in reverse; asa() and getBehaviors() searches for behaviors based on class after failing on name. (belisoful)
ENH: Issue #975 - Prado base object methods for each log type and automatic discovery of calling object for log category. (belisoful)
ENH: Issue #977 - THttpRequest::onResolveRequest for custom service resolution and TRequestConnectionUpgrade behavior for selecting service on http headers for "websocket". (belisoful)
ENH: Issue #982 - General Logging update: Profiling, Flushing large logs for long running processes, optional Tracing, tracks PID for multi-threaded logging, TBrowserLogRoute colorizes the time delta, TDbLogRoute adds a new DB field 'prefix' and functions for getting the DB log, DB log count, and deleting DB logs, TDBLogRoute also adds a RetainPeriod for automatically removing old logs, Adds an event TLogger::OnFlushLogs and flushes as a register_shutdown_function, adds the TSysLogRoute, and adds unit tests for logging. (belisoful)
ENH: Issue #984 - TEventSubscription for temporary event handlers. (belisoful)
ENH: Issue #972 - TProcessHelper (isSystemWindows, forking, kill, priority) and TSignalsDispatcher for delegating signals to respective global events, alarm interrupt callbacks at specific times, and per child PIDs callbacks. TEventSubscription can subscribe to a PHP process signal, an integer, as an event "name" (in TSignalsDispatcher). (belisoful)
ENH: Issue #973 - Embedded PHP Development Web Server CLI Action. (belisoful)
ENH: Issue #976 - A class's static functions are extendable with class-wide behaviors or a singleton implementing ISingleton. The PHP magic method TComponent::__callStatic forwards static function calls to implementing class-wide or ISingleton behaviors. (belisoful)
## Version 4.2.2 - April 6, 2023
BUG: Issue #811 - Update TSqlCriteria.php for fix phpdoc (zendre4)
BUG: Issue #814 - TSkinTemplate: ensure the full-NS class name is returned from the skin to match the one from the template (ctrlaltca)
BUG: Issue #815 - Cron trigger on first run fix, repeat running fix, and removed time zone code (belisoful)
BUG: Issue #819 - Support for OFFSET parameter without LIMIT clause in SQL query for TActiveRecord (ganiuszka)
ENH: Issue #820 - TApplicationComponent::getClassFxEvents Performance Mode should cache all (belisoful)
ENH: Issue #828 - TApplication::onSetUser raised when setting user. (belisoful)
ENH: Issues #821, #822, #823, #825, #826, #834, #839, #842 - Behavior updates (belisoful)
ENH: Issues #840, #847 - TPriority updates (belisoful)
ENH: Issues #818, #846 - TCallChain updates (belisoful)
ENH: Issue #866 - HTMLPurifier_Config and cache path (majuca)
ENH: Issue #868 - RFC: Service detection is fragile (ctrlaltca)
BUG: Issue #815 - Cron tasks delay until their proper time on first entry. Long running cron tasks no longer repeat further pending tasks. (belisoful)
ENH: Issue #865 - File and dir permissions were too permissive 0777, now the file permissions are 0644 and 0755 for directory by default. (majuca)
ENH: Issue #869 - Remove execute permission on all files excepted on php-cli (majuca)
ENH: Issue #875 - Make Prado::using able to autoload traits defined as prado3 namespaces (ctrlaltca)
## Version 4.2.1 - May 9, 2022
BUG: Issue #809 - Interface order and minimum required PHP version (ganiuszka)
BUG: Issue #810 - Index 0 is out of range error from TAuthorizationRuleCollection::insertAt (ganiuszka)
## Version 4.2.0 - Apr 19, 2022
ENH: Issue #790 TPermissionsManager implements Role Based Access Control and Authorization Rules for each permission (belisoful)
ENH: Prado::createComponent can take an array with "class" and object properties to set on the new object (belisoful)
ENH: TAuthorizationRule adds Priority for proper ordering of Authorization Rules, eg. Deny All can be and stay the final rule using priorities. (belisoful)
ENH: TPageConfiguration is extendable with dynamic events for loading xml & php and then applying (belisoful)
ENH: TUser adds dynamic events dyDefaultRoles and dyIsInRole for default roles and checking the user in a role. (belisoful)
BUG: Issue #791 - TUserManager loads PHP user file configurations properly (belisoful)
ENH: Adds IPriorityItem for auto-prioritizing items in TPriorityList and TPriorityMap (belisoful)
CHG: Issue #783 - Refactor the Shell system with Composer in mind; shell routes and actions, updated the help system. (belisoful)
ENH: Issue #761 - TCronModule and TDbCronModule with supporting classes, scheduled like linux cron schedule expression, 8 languages. (belisoful)
ENH: Issue #743 - Integrate Composer extensions for PRADO, module ids can be the composer package names and the class will be ['extra']['bootstrap'] (from the composer.json file). TPluginModule/TDbPluginModule for additional functionality as the parent class for extensions. Composer "type" : "prado4-extension" (belisoful)
BUG: Issue #784 - Prado-CLI corrected I18N by translating the shell "LANG" into "HTTP_ACCEPT_LANGUAGE" (belisoful)
ENH: Issue #778 - Added TEventContent for filling in the control content from handlers of a global event (belisoful)
ENH: Issue #776 - Added TDataSize for formatting data sizes with bytes, kB, MB, KiB, MiB, etc. (belisoful)
ENH: Issue #775 - TPageService::onAdditionalPagePaths for additional pages (to look for) from composer package extensions (belisoful)
ENH: Issue #772 - TMap, TPriorityMap adds dyNoItem, dyAddItem, and dyRemoveItem dynamic events. (belisoful)
ENH: Issue #771 - Added TDbParameterModule for reading and setting application parameters with a database-table. (belisoful)
CHG: Issue #765 - Prado-CLI moved into their own set of classes rather than one big prado-cli file with all the functionality in it. (belisoful)
CHG: Issue #763 - Moved secondary saving of global variables until after onEndRequest in case global state changes in onEndRequest. (belisoful)
ENH: Issue #750 - Added TGravatar (belisoful)
ENH: issue #744 - Added RTL theme support (belisoful)
BUG: Issue #742 - TSecurityManager::setHashAlgorithm uses hash_algos() rather than hash_hmac_algos() - some algos may be set that are not supported by hmac (belisoful)
ENH: Issue #741 - TBehaviorsModule and TBehaviorParameterLoader for instancing behaviors in an application; added various behaviors like TParameterizeBehavior that gives new defaults and data from the parameters to any prado object property. (belisoful)
ENH: Issue #740 - Behaviors can instances from an array with class and properties, important for #741 (belisoful)
BUG: Issue #739 - TApplicationConfiguration::loadParametersPhp variable unset but called (belisoful)
CHG: AutoGlobalListen is true for TApplicationComponents (but not TWebControls), and select TComponent children, their 'fx' events will automatically listen and unlisten to fx events on construct and destruct.
ENH: Issue #738 - Added TAuthManager::onLogin, onLogout, and onLoginFailed events (belisoful)
ENH: Issue #737 - Added TSkinTemplate that doesn't do class/attribute validation so skins are more portable between apps (belisoful)
ENH: Issue #735 - Added TPageService::onPreRunPage so modules can access Page events (belisoful)
BUG: Issue #728 - TWeakCallableCollection makes use of 7.4 WeakReference so fx events do not stop garbage collection (belisoful)
CHG: Split Wsat into its own repo pradosoft/prado-wsat (ctrlaltca)
CHG: T(Active)HtmlArea4 has been replaced by T(Active)HtmlArea5, based on tinyMCE version 5 (ctrlaltca)
CHG: removed hardcoded bootstrap libraries (ctrlaltca) var/softaculous/oxwall/changelog.txt 0000755 00000017366 15234724115 0013725 0 ustar 00 Oxwall 1.8.4, July 26, 2016
====================================
Platform [core]:
- added advanced SEO settings for site pages
- added option to generate and update sitemap
- removed hardcode for Submit form element (contributed by revkov https://github.com/oxwall/oxwall/pull/357)
- made the reason for a profile suspension displayable on site
- fixed preloader display for Simplicity theme
- introduced hardcode ban to upload PHP files
- introduced required PHP version check before platform update
- when attempting to update plugins while there is an available platform update present, the system will warn admins to perform platform update first
- fixed the display order for profile fields on profile view page within mobile version
- changed URL attribution to https://developers.oxwall.com
- changed anti-CSFR token lifetime to match user’s on-site session time
- fixed avatar crop bug on profile edit page
- improved SSL integration with CloudFlare
Forum [forum]:
- fixed display of quoted text for Simplicity theme (contributed by WalterMisar https://github.com/oxwall/simplicity/pull/7)
Advertisement [ads]:
- fixed fatal error during plugin installation
Videos [video]:
- fixed integration with dailymotion.com
Oxwall 1.8.3, May 17, 2016
====================================
Platform [core]:
- added CURL support for remote platform requests
- added blocked users list
- fixed message appearing during theme upload with missing update server connection
- added option to use empty database user password during installation
- fixed bug preventing cash clearing for configs during single script launches
- added standard placeholder for forms, which displays invalid label
- added Check Updates button to Admin Panel for manual update checks
- added ALT HTML attribute for profile avatars on profile list page
- added support for anti CSFR tokens, which are now used by all forms automatically. Individual usage access is also available.
- removed send escaper functions
- fixed mobile version bug preventing login from any page
- removed .htaccess file from update pack
- fixed bug with inverted commas within langs breaking stats on Admin Panel index page
Photos [photo]:
- photo description is no longer cut due to tag presence
- added ALT HTML attribute for photo thumbs within photo widget on profile view page, as well as photo lists (latest, top rated, most discussed)
- added ALT HTML attribute for photos on separate photo view page
- added GET parameter for temporary photos to prevent caching errors
Newsfeed [newsfeed]:
- added ALT HTML attribute for displaying thumbs of various content
Messages [mailbox]:
- blocked users no longer show up in contact list
- contact list search now displays results with partially typed-in names
- fixed bug with invitation label not disappearing in chat window
- fixed JS error “TypeError: element.input is null" appearing while switching operation modes (chat/mail/chat+mail) in plugin settings
Video [video]:
- added ALT HTML attribute for video thumbs on video listings page
Events [event];
- added ALT HTML attribute for event thumbs
Groups [groups]:
- added ALT HTML attribute for group thumbs
Oxwall 1.8.2, Mar 22, 2016
====================================
Platform [core]:
- oxwall minimum PHP supported version increased to 5.5;
- the list of changes is now shown during plugin update request (if the plugin developer added the list of changes to the Store);
- improved validation system for commercial plugins/themes;
- added new class definition for each theme, where $thene-name is taken from theme.xml
- fixed several XSS vulnerabilities (thanks to a report from Tim Coen);
- added Uninstall option for disabled plugins in the Admin Panel;
- fixed a bug preventing site admins to upload graphics in Admin Panel > Appearance > Customize > Graphics, in cases when site admins did not have user action ‘upload photos’;
Photos [photo]:
- added warning message when uploaded photo is bigger than the size defined in the plugin settings;
- fixed photo thumbs display for photo widget in mobile version;
- removed duplicate photos in the list of photos on the ‘Most discussed photos’ page;
Events [event]:
- fixed a bug allowing logged out users to edit events of other users;
Videos [video]:
- fixed the validation of video embed code during editing;
Friends [friends]:
- fixed a bug appearing when a user deletes someone from the friends list;
Newsfeed [newsfeed]:
- outbound links left by users are no longer converted to https, when SSL is active across the entire site;
- unless a user post features a thumbnail image, the post now fits the full width of the newsfeed;
Import Contacts [contact_importer]:
- added Send button when selecting Gmail contacts to invite;
Oxwall 1.8.1, Jan 12, 2016
====================================
Platform [core]:
- added mobile version for new Simplicity theme;
- license key is now required for commercial items during the installation of plugins/themes;
- list of photos available for avatar upload is no longer duplicated on the Change Avatar page;
- inverted commas within tags no longer cause errors on the content editing page;
- improved stability for captcha display;
- added new field type for fselect single choice, which allows to add unlimited number of values;
- added User's Timezone option to User Preferences;
- fixed Not Found errors for images on Admin Panel > Appearance > Customize > Graphics page;
- added basic customization option for mobile version theme in Admin Panel;
- improved Amazon S3 support;
- added option to disable captcha from Admin Panel;
Newsfeed [newsfeed]:
- private blog posts no longer show up in general Newsfeed;
Virtual Gifts [virtualgifts]:
- any selected gift is now shown as selected in Simplicity theme;
Forum [forum]:
- fixed link for creation of topics in Forum Topics index widget;
- added check during creation of new topic to see if a forum for this new topic exists;
Photos [photo]:
- empty albums no longer show up in User Albums widget on Profile View page;
- fixed photo search by tag bug;
- fixed bugs found during display of photos on photo lists;
Advertisement [ads]:
- fixed Google AdSense display bug;
- fixed conflict with Geolocation Data plugin;
TinyChat [tinychat]:
- added new user action "Use Chat";
Events [event]:
- only expired invitations are now deleted by cron;
Oxwall 1.8.0, Sep 8, 2015
====================================
Platform:
- introduced new default theme Simplicity (Frontend + Admin Panel);
- redesigned navigation and notification system in Admin Panel;
- added widget support in Admin Panel;
- reorganized pages/interfaces/controls in Admin Panel for improved simplicity and comprehension;
- fixed possible collision in database during user authorization;
- password for "Guests can view the site with password" mode is now encrypted;
- total interface overhaul for Admin panel >> Appearance >> Edit theme >> Graphics;
- fixed bug within mobile version preventing avatar attachment during registration;
Photos:
- fixed bug which duplicated photos in Top rated/Most discussed lists;
- empty albums are no longer displayed in album lists;
- added indices for fields entityId and entityType in table ow_photo_album;
Messages:
- fixed link display in new message notifications;
- fixed attachment display in mobile version;
- added chat/message link within new message notification template in mobile version;
- all latest messages are now viewable in mobile version;
- fixed search for messages;
- fixed message lists paging in mobile version;
Contact Importer:
- added support for latest Facebook API;
Facebook connect:
- added support for latest Facebook API;
Friends:
- enhanced synchronization with Newsfeed plugin;
Forum:
- links within mobile version's notifications for new replies in subscribed topics now lead to mobile version's forum topic; var/softaculous/pmwiki/changelog.txt 0000644 00000014244 15234724306 0013706 0 ustar 00 Version 2.7.4 (2026-07-31)
Fix bug with {$$PageListCount} (PITS:01561).
Sanitize $action, fix page variables {$Action}, {$PasswdRead} and related (PITS:01562).
Update documentation.
Version 2.7.3 (2026-07-26)
Fix bug with {(substr ...)} when arguments are missing (PITS:01560, cont.)
Version 2.7.2 (2026-07-26)
Fix bug with {(substr ...)} when UTF-8 is not enabled (PITS:01560).
Version 2.7.1 (2026-07-24)
Fix $Version string, somehow mangled by the release script.
Version 2.7.0 (2026-07-24)
Add class TempPageStore, enabled if no config.php (PITS:01555).
Add $RevisionNum, $EnableVersionedAssets, $VersionedAssetKeys.
Make pm_recode() recursive.
Add $JsonEncodeFn, pm_json_encode() retry if json_encode() exists but fails (PITS:01556).
Add $EnableBodyDataAttrs, data-attributes to , useful for styling and scripting.
PmTOC remove "?" and "Δ" characters from createlink/reupload links from TOC.
WikiWords fix bug with CamelCase WikiStyles, reported by JR.
Add [[##visible-anchor]], $VisibleAnchor, refactor MarkupAnchors().
Add $TextSectionQualifyPatterns, cb_expandkpvz().
PmSyntax slight optimization.
MarkupBigSmall() move sizes to pmwiki-core.css, remove unsafe-inline style.
Fix warning for pagelist order=- (nothing), reported by Simon.
PSFT() allow for %#d and other extensions, fix %o if Intl:NumberFormatter is unavailable, better handling of double encoded percents.
Refactor tools.php into separate files. Add request.php, helpers PmREQ($data), PmREQB($url).
Add warning for read-only temporary directories.
Fix warnings for PHP 8, reported by Simon.
Fix TraceMarkup() to correctly show closures.
PPTD() add M=month, cast to float if numeric.
PmFFVersion() add 'basedate' format.
Input forms track optional checkboxes names, allow for setting flags like +checked.
FmtTemplateVars() revert MarkupEscape calls - bug with PmForm.
$Conditions['enabled'] allow for testing of Var.SubItem for $GLOBALS['Var']['SubItem'].
Update StopWatch() for PHP 8.
Refactor FileSizeCompact() to handle even bigger numbers, add helper FileSizeFromCompact().
HandleUpload() show warning if upload_max_filesize or post_max_size from php.ini are smaller than $UploadMaxSize.
Uploads add jxl extension.
PmLib.afetch add onprogress entry, Dropzone add upload progress bars, remove icons.
Add helper PEVAL(), CallbackWithArgs(), rewrite to not use eval() for most core conditionals, page variables, and markup expressions (PITS:01558).
Add page variable {$RevisionNum} (PITS:01559), restore {$VersionNum}, add {$VersionShort}, {$CurrentLocalTime}, {$CurrentTime} (moved from pmform.php), {$Targets} (used by a few recipes).
Fix unneeded warning for customized e_textarea in browse mode, reported by Simon.
Update documentation.
Version 2.6.0 (2026-16-05)
PmLib encapsulate in a function, improve safety features, add cloneFontMetrics(), echo.t(), echo.e(), pd(), pd.sp(), adj.rc(), adj.rw(), ue.core(), ue.decode(), sa() remove events, create() add shortcut properties.
Refactor pmwiki-utils.js to not use innerHTML.
Bare urls stop before %% (likely wikistyle).
PmSyntax update for PmLib; fix >> style<< when there is an initial space; stop bare URLs before %%, fix display of links with multiple vertical bars, highlight Attach: intermap even if uploads are not enabled; style empty InterMap prefixes like Attach: as links not PageTextVariables; refactor for semantic page variables.
Add helper function PrintPageFmt($pagename, $fmt), PQAA($array).
EditShortcuts simpler notation, Primary+Shift+D=Cycle directive/markupexpression, Primary+Shift+S=Cycle wikistyles, reorder wikistyles, Primary+I to cycle more formats, insertlink() detect likely pictures, uploads, add [[#anchor]]...[[#anchorend]], context-aware insert wikistyle-code, refactor for easier custom keys, custom functions.
Add revision identifiers to core JS files.
Refactor/reposition LoadInterMaps() before PmUtilsJS() in order to have the parsed InterMaps highlighted in PmSyntax.
Attach: links to strip #hash when resolving filenames.
Update pmtoken(), pmnonce() to fail if secure random generator is missing.
Add Media, $PmMedia, scripts/media.php, pub/lib/pmwiki-media.js.
Fix opus mime type.
WikiStyles if height and width are numeric and not attributes, add px.
Attachlist add class name, remove empty title="" attribute.
Add core css classes clear-both, clear-left, clear-right, pre-wrap, ellipsis.
Input forms add datetime-local, pmdatetime.
Add $PTVPreParseFn, requested by Gnuzoo.
Add $EnableHideAttachPrefix.
Restrict datashift targets to be contained in #wikitext, #wikileft, or #wikiright.
Merge existing deprecated $UploadBlacklist into $UploadBlockPatterns.
Add condition "grouphome".
PageVars, template vars, pagelist pseudovars, include pseudovars add default value.
Set $EnablePGCust to 99 after pgcust.php.
Fix a dropzone could appear on the login form, reported by XES.
Update documentation.
Version 2.5.9 (2026-04-05)
PmLib highlight_pre add language as tooltip.
PmSyntax allow for %hlt% language autodetection (except for PmWiki markup which needs to be %pmhlt%). Enable semi-transparent selection.
Add PmLib.ready._init.
Sortable fix when there are fewer cells in a row.
Fix bug with $MessagesFmt shown multiple times on preview edit.
Responsive skin add data-wikititle to #wikilogo a.
Add wikistyle %download% for links (PITS:01528).
Add PmLib.itext(), update guiedit.js.
$EnableEditAutoText add new keyboard shortcuts, see Cookbook:EditHelp. Refactor EditAutoText, add PmLib.EditShortcuts to allow customization.
SVG logo in sample-config.php.
Fix bug with SaveAttributes.
ParseArgs/Pagelist ignore unquoted empty arguments (PITS:01545).
FixUrl to fully encode (with Shift) and decode (with Ctrl) all special characters (PITS:01548).
When parsing SiteAdmin.AuthUser, join lines ending in a single backslash (allows for multiline user properties).
Remove $EditAutoBrackets from $EnableCommonEnhancements.
UpdatePage show current $EnablePost, $IsPagePosted in StopWatch.
Refactor LocalTimes.
The timestamps on page histories will now be wrapped in