Добро пожаловать на форум «В кругу Друзей» Становитесь участниками моего проекта, обращайтесь к размещённой в нем информации: знакомьтесь с новостями, присоединяйтесь к проектам, обсуждайте актуальные проблемы, развивайте интересные идеи!

Recommended Posts

  • Replies 39
  • Created
  • Last Reply

Top Posters In This Topic

Top Posters In This Topic

Popular Posts

Спасибо! Пока все нравиться 

Движок форума обновил до версии  4.1.16 Приятного общения!

В 26.03.2016 в 17:10, Константин сказал:

Начал перенос форума "Карело-финская лайка" на форум "В кругу Друзей"

Все учетные записи пользователей перенесены, занимаюсь переносом тем.

Перенос форума завершен.

Link to post
Share on other sites
  • 2 weeks later...

Движок форума обновил до версии 4.1.10

Скрытый текст

This is a maintenance release to fix reported issues and add refinement to existing features. In addition to bug fixes and performance improvements, it includes following new/changed features:

  • Instant notifications are now dismissible.
  • The sidebar has been added back to the stream pages.
  • You can now sort by most downloaded in Downloads app.
  • The ModeratorCP and AdminCP IP Address Tools now allow you to track the IP addresses used to vote in polls.
  • A new setting has been added to disable the RSS feed for activity streams.
  • A new setting has been added to specify the minimum display name length.
  • Adds a new "can unban" moderator permission separate to the "can edit profiles" permission being used previously.
  • IP addresses now show in reports.
  • There is now a constant-level setting to disable the ACP IP address check in case of being locked out of the ACP.
  • Several improvements to Commerce to make some features clearer: the Shipping Rates configuration pages now indicate to the admin if a potential mistake has been made, the front-end indicates to admins if no support departments have been set up, and the renewal settings wording has been clarified.

Important: If you are running PHP 5.4 you will need to download this patch and apply it after you upgrade to 4.1.10. Version 4.1.11 will include the patch. Note that PHP 5.4 is very out of date and you should ask your web host to upgrade to a supported version of PHP.

Additional Information

Security Fixes

This release includes fixes for several security issues:

  1. A CSRF vulnerability on moderation tools, meaning a malicious user could exploit a moderator's session to perform moderator actions.
     
  2. Several XSS vulnerabilities meaning if a malicious user could convince another user to perform particular steps, limited arbitrary JavaScript could be executed. 
     
  3. A vulnerability that could cause attachments to be downloaded automatically without the user requiring to click on them.
     
  4. A vulnerability that could allow malicious users to modify other users stream settings.

 

Other Important Fixes

In addition to over 100 smaller bug fixes and performance improvements, the following important fixes are included:

  • Errors in Commerce when using a locale that uses a comma as the decimal point.
  • If friendly URL rewriting is not enabled, links shared on Facebook do not work.
  • Several issues with Anti-Fraud rules in Commerce, especially in conjunction with PayPal.
  • The "Upcoming Events" widget in Calendar may not show all events.
  • Pagination in some areas may be incorrect.
  • Several issues with BBCode, especially IMG tags inside of URL tags and lists.
  • Several issues with the new activity stream including an issue where container filters may not work and some situations may cause the page to overflow because the filter bar is too wide.
  • Emoticons may appear squished in the Chat application.
  • The support request auto resolve feature in Commerce may send emails at the wrong time.
  • Using MariaDB may cause some tables to be converted to MyISAM from InnoDB.
  • Some filters in the mass-move/prune feature in the AdminCP weren't working correctly.
  • Trying to set up the 2CheckOut gateway in Commerce may not work.
  • Several MaxMind issues, including transactions made by guests would show an error.
  • Items set to be excluded from the sitemap may still be included.

Information for 3rd party developers

  • ProfileSync classes are no longer required to have a photo() method
  • jQuery has been updated to 1.12.2
  • CodeMirror has been updated to 5.13
  • Login Handlers must now implement a canProcess() method to verify that the login handler can be used in the event a member disassociates their account from a different service.

Приятного общения!

Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.