| Security |
Fixed an XSS vulnerability in the accessible media selection field caused by inadequate input validation (CVE-2024-21729).
|
| Security |
Fixed a Self-XSS vulnerability in the Fancy Select list field layout caused by improper input escaping (CVE-2024-21730).
|
| Security |
Fixed an XSS vulnerability in the StringHelper::truncate method caused by improper input handling (CVE-2024-21731).
|
| Security |
Fixed XSS vulnerabilities in the Wrapper component and module caused by inadequate input validation (CVE-2024-26279).
|
| Security |
Fixed an XSS vulnerability in the default custom-field value handled by the com_fields component (CVE-2024-26278).
|
| Fixed |
Added an update-channel reset to the Joomla Update component (#43717).
|
| Fixed |
Changed Schema.org data to load only in supported forms (#42825).
|
| Fixed |
Changed the created_by field to use a value of 0 when no author is specified (#43752).
|
| Fixed |
Restored support for embedding PDF documents (#43716).
|
| Fixed |
Changed the redirect URL from the Location header to be correctly handled as a string instead of an array (#43734).
|
| Fixed |
Fixed radio buttons and checkboxes in nested Subform fields (#43660).
|
| Fixed |
Added support for the onchange attribute to the Modal Select form field (#43618).
|
| Fixed |
Added resetting of cached layout data when running the form field setup() method (#43562).
|