? ? Pending

User tests: Successful: Unsuccessful:

avatar SniperSister
SniperSister
10 Aug 2020

Summary of Changes

This PR updates tinymce to version 4.5.12 - this is the highest version we can include in Joomla 3 due to browser support.

It also fixes numerous security issues.

Changelog:

Fixed so links with xlink:href attributes are filtered correctly to prevent XSS. #TINY-1626
Fixed the selection.setContent() API not running parser filters #TINY-4002
Fixed the visualchars plugin converting HTML-like text to DOM elements in certain cases #TINY-4507
Fixed HTML comments incorrectly being parsed in certain cases #TINY-4511
Fixed a security issue related to CDATA sanitization during parsing #TINY-4669
Fixed content in an iframe element parsing as dom elements instead of text content #TINY-5943

avatar SniperSister SniperSister - open - 10 Aug 2020
avatar SniperSister SniperSister - change - 10 Aug 2020
Status New Pending
avatar joomla-cms-bot joomla-cms-bot - change - 10 Aug 2020
Category JavaScript External Library Front End Plugins
avatar SniperSister
SniperSister - comment - 10 Aug 2020
avatar brianteeman
brianteeman - comment - 10 Aug 2020

is the admin-item-edit js supposed to be here?

avatar SniperSister SniperSister - change - 10 Aug 2020
Labels Added: ?
avatar SniperSister
SniperSister - comment - 10 Aug 2020

@brianteeman whoops, good catch, fixed

avatar zero-24 zero-24 - test_item - 11 Aug 2020 - Tested successfully
avatar zero-24
zero-24 - comment - 11 Aug 2020

I have tested this item successfully on d98c59e

Looks good to me, thanks @SniperSister


This comment was created with the J!Tracker Application at issues.joomla.org/tracker/joomla-cms/30329.

avatar richard67 richard67 - test_item - 15 Aug 2020 - Tested successfully
avatar richard67
richard67 - comment - 15 Aug 2020

I have tested this item successfully on d98c59e


This comment was created with the J!Tracker Application at issues.joomla.org/tracker/joomla-cms/30329.

avatar richard67 richard67 - change - 15 Aug 2020
Status Pending Ready to Commit
avatar richard67
richard67 - comment - 15 Aug 2020

RTC


This comment was created with the J!Tracker Application at issues.joomla.org/tracker/joomla-cms/30329.

avatar wilsonge wilsonge - change - 15 Aug 2020
Status Ready to Commit Fixed in Code Base
Closed_Date 0000-00-00 00:00:00 2020-08-15 20:47:01
Closed_By wilsonge
Labels Added: ?
avatar wilsonge wilsonge - close - 15 Aug 2020
avatar wilsonge wilsonge - merge - 15 Aug 2020
avatar wilsonge
wilsonge - comment - 15 Aug 2020

Thanks guys!

Add a Comment

Login with GitHub to post a comment