Select your language

Sign up

Joomla 6 Full Package 6.1.4

  • Category: Core
  • Version: 6.1.4
  • Date:
  • Download type: Free
  • Compatibility: J6
Security
[20260901] Fixed an XSS vulnerability in the HTMLHelper::link method.
Security
[20260902] Fixed unauthorized user account creation through the profile.save controller.
Security
[20260903] Fixed improper ACL checks for access-level web service endpoints.
Security
[20260904] Fixed an XSS vulnerability in the generic media output layouts.
Security
[20260905] Fixed arbitrary directory deletion through the cache purge action.
Security
[20260906] Fixed improper ACL checks in the content history comparison view.
Security
[20260907] Fixed improper ACL checks in outputs for tagged items.
Security
[20260908] Fixed an XSS vulnerability in HTML mail templates.
Security
[20260909] Fixed SSRF vectors in various core extensions.
Security
[20260910] Fixed improper ACL checks for workflow stage changes.
Security
[20260911] Fixed an XSS vulnerability in the link toolbar layout.
Security
[20260912] Fixed an XSS vulnerability in the module list.
Security
[20260913] Fixed improper ACL checks for various web service edit tasks.
Security
[20260914] Fixed an MFA authentication bypass through remember-me cookies.
Security
[20260915] Fixed an InputFilter XSS filter bypass caused by an HTML5 entity decoding mismatch.
Security
[20260916] Fixed an InputFilter XSS filter bypass using whitespace characters in HTML data URIs.
Fixed
#46860 — Ensured absolute logo image URLs are used in Schema.org JSON-LD output.
Fixed
#47213 — Fixed a null date value in publish_up.
Fixed
#47461 — Fixed an unset operation on a field variable.
Fixed
#47495 — Ensured that option and title attributes are respected in alternative layout XML files.
Fixed
#47638 — Fixed URL parameter handling in the Tags menu item.
Fixed
#47935 — Allowed the media image editor to re-save files using their original non-ASCII filenames.
Fixed
#47966 — Displayed the read-more link in the Articles module when introtext_limit truncates the text.
Fixed
#48036 — Closed or hid dropdown menus before they are disabled.
Fixed
#48047 — Escaped CSV formula characters when exporting banner tracking data.
Fixed
#48056 — Used hash_equals for TOTP code verification.
Fixed
#48120 — Fixed an open_basedir restriction error in the Image List custom field.
Fixed
#48130 — Safeguarded calls to the php_uname function.
Fixed
#48144 — Fixed the Smart Search indexer when using PostgreSQL.
Fixed
#48208 — Fixed category associations being lost when a translation is unpublished.
Fixed
#48221 — Prevented duplicate entries in #__ucm_content whenever an article containing tags is saved.
Fixed
#48233 — Backported the security flag for updates.
Fixed
#48234 — Made the filter button visible in the category articles list.
Fixed
#48238 — Fixed invalid jobLocationType values in JobPosting schema output.
Fixed
#48248 — Fixed the Tags alias uniqueness issue.
Fixed
#48252 — Added language retrieval to edit_container.php.
Fixed
#48274 — Fixed errors in the Template Manager.
Fixed
#48280 — Fixed a warning when accessing unavailable source files in the Template Manager.
Fixed
#48286 — Improved keyboard navigation in the Calendar field.
Fixed
#48304 — Removed the CSRF token check from POWcaptcha.
Fixed
#48320 — Prevented duplicate item selection from causing 404 errors when deleting files in the Media Manager.
Fixed
#48327 — Fixed the template override count.
Fixed
#48328 — Fixed duplicate options in fields.
Fixed
#48339 — Fixed an error when filtering a category list by month.
Fixed
#48347 — Cast the preg_match result to a boolean value in the isImage method.
Fixed
#48362 — Fixed the full-text caption in the legacy Newsflash module.
Fixed
#48368 — Fixed InstallerScriptTrait::allowDowngrades not working.
Fixed
#48386 — Fixed an archive extraction error in the Template Manager.
Fixed
#48434 — Fixed untranslated buttons in the TinyMCE builder.
Fixed
#48450 — Fixed errors in ComponentlayoutField.
Fixed
#48468 — Fixed clearing the workflow context selector.
Newsletter Subscription
Enter your email address and we will keep you updated!

Joomla.center is not affiliated with or endorsed by the Joomla!® Project or Open Source Matters. The Joomla!® name and logo is used under a limited license granted by Open Source Matters, the trademark holder in the United States and other countries.