Joomla! 1.0.14 released

Following on from the release of Joomla!1.5.1, it is announced the immediate release of Joomla!1.0.14.

Security Fixes

  • [LOW] Fixed XSS issue in Search Component.
  • [LOW] Fixed XSS issue in Search results pages.
  • [LOW] Disallowed users from adding extra wildcard filters in search strings.
  • [LOW] Fixed multiple typos in back end Content Component making array integer check ineffective.
  • [LOW] Fixed case-sensitive flaw in Input Filter.
  • [HIGH] Fixed CSRF issue allowing portal compromise - Administrator components.

Other Significant Fixes

  • Administrator logout problem.
  • Fixed bug in Search Component where small word were not properly filtered out.
  • Improved efficiency of regular expressions in Search Component (thus reducing CPU resources when called).
  • Added “Preview” link to Administrator template (to match 1.5).
  • Fixed bug in pagination links (extra space was being added to the link).
  • Various core API fixes.

Related Posts

You can follow any responses to this entry through the RSS 2.0 feed.

Leave a Reply