Login/Register
(IR) Installatron Remote

Contao

Contao är ett open source content management program. Contao var tidigare känd som TYPOlight.

Installatron Remote is a one-click solution to install and manage all of your Contao websites. Using Installatron helps ensure Contao is kept up-to-date and secure, and Installatron features like Clone, Backup and Restore, and Backup Scheduling can save you time. Learn more about Installatron Remote

Information

AnsökanContao
Kategori cms
Aktuella versioner5.3.33
4.13.54
Senast uppdaterad21 Maj
SpråkSwedish,
17 mer

Krav

Kostnadfri
Installera Storlek250MB
Licensöppen källkod

Stödja

Contao Webbplats
Dokumentation
Vanliga frågor
Stöd Sida
Installatron Auto-Installer Support

Relaterade Apps

Contao är ett open source content management system (CMS) för personer som vill ha en professionell närvaro på Internet som är enkel att underhålla. Den state-of-the-art struktur systemet erbjuder en hög säkerhet standard och ger dig möjlighet att utveckla sökmotorvänliga webbplatser som är också tillgänglig för personer med funktionshinder. Vidare kan systemet utökas flexibelt och billigt. Enkel hantering av användarnas rättigheter, Live Update Service, den moderna CSS ramar och många redan integrerade moduler (nyheter, kalender, formulär, etc.) har snabbt gjort Contao en av de mest populära öppna förvaltning källkod system på marknaden.
-Contao utvecklare

5.3.33

(säkerhetsutgåvan)
21 Maj - 250MBLäs mer: https://github.com/contao/contao/blob/5.3.33/CHANGELOG.md

5.3.20


2 Januari - 250MB5.3.20

Bug Fixes
  • Use CAST(… AS BINARY) instead of BINARY (leofeyer)
  • Fix the help wizard (bytehead)
  • Add the missing relations to the DCAs (aschempp)
  • Add the domain to the "root page dependent module" configuration (aschempp)
  • Disallow creating or updating elements with invalid parent record (aschempp)
  • Handle ampersands in the alt attribute of the picture insert tag (markocupic)
  • Use the correct session bag in the preview link listener (leofeyer)
  • Make the default (global) operations more consistent (aschempp)
  • Disable overlayClick for SimpleModal (zoglo)
  • Fix the base path for canonical URLs (fritzmg)
  • Do not normalize the resampling-filter array key (ausi)
  • Make sure the correct test-case package is installed in Contao (aschempp)

5.3.19

Bug Fixes
  • Fix the sorting when copying multiple form fields as a non-admin user (qzminski)
  • Replace insert tags in Twig surrogate parent templates (ausi)
  • Enable double encoding for JSON in Twig (ausi)
  • Handle null result in 404 router provider (aschempp)
  • Make Contao 5.3 compatible with PHP 8.4 (bytehead)
  • Fix the "lost password" module (leofeyer)

5.3.18

Bug Fixes
  • Show section headlines in the back end preview (leofeyer)
  • Allow basic entities in section headlines (leofeyer)
  • Make the abstract entities migration case-sensitive (leofeyer)
  • Prevent possible type error in DC_Table::getClipboardPermission (fritzmg)
  • Do not load the CAPTCHA script in the back end preview (leofeyer)
  • Skip fragments which inherit legacy modules in debug:fragments (bytehead)
  • Remove superfluous domain encoding (falkgeist)
  • Cache hot path in model (Toflar)
  • Allow page controllers to create the response context (fritzmg)
  • Consider the doNotDeleteRecords setting when deleting child records (patrickjDE)
  • Fix login redirect and session usage (fritzmg)
  • Fix the permissions check for "save and duplicate" (aschempp)
  • Decode entities for favorites labels (fritzmg)
  • Use the RateLimiter component to limit password reset requests (bytehead)
  • Flag deprecated Twig functions as deprecated (m-vo)
  • Harden CSP header parsing (bytehead)

5.3.17

Bug Fixes
  • Fix the ContentElementTypeListener (Toflar)

5.3.16

Bug Fixes
  • Deprecate Controller::sendFileToBrowser() and add the postDownload hook to the UPGRADE.md file (Toflar)
  • Check permissions on all operations in the PermissionCheckingVirtualFilesystem decorator (m-vo)
  • Use a listener to set the allowed element types (aschempp)
  • Enable pauseOnMouseEnter in the Swiper template by default (fritzmg)
  • Fix a type error in CalendarContentVoter (fritzmg)
  • Improve the template DX when overwriting variables (m-vo)
  • Improve the VFS extra metadata handling (m-vo)
  • Do not redefine existing fragments (bytehead)
  • Replace newlines in CSP headers (bytehead)
  • Fix an invalid array access in the Model::cloneOriginal() method (Toflar)
  • Add the missing root--dark icon (zoglo)
  • Fix tooltips on mobile devices (fritzmg)
  • Do not save long file extensions during filesync (fritzmg)
  • Use the resource finder in the Twig template locator (aschempp)
  • Move fieldset legend padding to button (fritzmg)
  • Remove PDF remnants (fritzmg)
  • Fix a type error in NewsContentVoter (fritzmg)
  • Add a null check for a possible empty array (bytehead)

5.3.15

Security
CVE-2024-45398: Remote command execution through file uploads
CVE-2024-45612: Insert tag injection via canonical URLs

5.3.14

Bug Fixes
  • Handle string IDs in the article content voter (aschempp)
  • Only add the galleryTpl field to the legacy gallery element (fritzmg)
  • Correctly handle news feed URLs in the page routing listener (leofeyer)
  • Fix the parent record loading in the dynamic parent table voter (aschempp)
  • Fix the description list markup for template templates (fritzmg)
  • Fix type error in downloads content element (fritzmg)
  • Fix the name of symlinked filesystem adapters (fritzmg)
  • Fix the line height of the ellipsis containers (leofeyer)
  • Consider subfolders and Twig templates within the theme export (zoglo)

5.3.13

Bug Fixes
  • Fix the content element player start time (kllmanu)
  • Show a warning if a personal data module allows to change the password (leofeyer)
  • Add voters for content elements (aschempp)
  • Generate a new session ID after a member has changed their password (leofeyer)
  • Allow toggling fieldset states with keyboard actions (A11Y) (zoglo)
  • Improve the web worker time limit (ausi)
  • Restore the previous messages order in DC_Table (fritzmg)
  • Use ERR.submit in all DC forms (fritzmg)
  • Improve the visibility of the .limit_toggler in the back end (lukasbableck)
  • Encode mailto addresses in the markdown element (Toflar)
  • Add the DataContainer::getActiveRecord() method (Toflar)
  • Prevent endless recursion when copying elements with children (ausi)

5.3.12

Bug Fixes
  • Clone content elements with all data (aschempp)
  • Make sure to add the assets/files context to all image paths (leofeyer)
  • Use maxLines: Infinity to automatically resize the ACE editor (leofeyer)
  • Make the theme icons forward compatible (leofeyer)
  • Fix the double form submission script (leofeyer)
  • Skip database backups if the remaining migrations will not be executed (fritzmg)
  • Fix the padding of the main content area on mobile devices (leofeyer)
  • Fix the z-index of the limit height toggle (leofeyer)
  • Use the modified element when cloning (aschempp)
  • Use the widget attributes to generate the DCA row (aschempp)
  • Cleanup a leftover service argument (Toflar)
  • Do not limit the number of download items (mpitz)
  • Add the :never return type to methods that never return (aschempp)
  • Generate public URIs for automatically mounted adapters replacing symlinks (m-vo)
  • Handle .<ext>.twig file extensions in DC_Folder (m-vo)

5.3.11

Bug Fixes
  • Fix the priority of the web worker and improve memory handling (Toflar)
  • Fix missing submitter in form data (ausi)
  • Fix infinite loop in encore dev --watch (zoglo)

5.3.10

Bug Fixes
  • Remove two leftover clearing DIVs (leofeyer)
  • Prevent double form submission (ausi)
  • Fix symlinked file not inside root directory (ausi)
  • Evaluate scripts in Ajax form responses (ausi)
  • Fix toggling nodes if there is no global operation (leofeyer)
  • Fix drag and drop in the file manager (leofeyer)
  • Skip sleeping in messenger web worker (ausi)
  • Return to the list view after adding items to the clipboard (aschempp)
  • Fix missing query parameters in the file insert tag (ausi)
  • Use the translator language instead of the request language for the iflng and ifnlng insert tags (Toflar)
  • Check CSRF and private response after the session (ausi)
  • Replace non-routable URLs with an empty string for the {{link*}} insert tags (fritzmg)
  • Initialize the Contao framework when working with opt-in tokens (aschempp)
  • Rework the messenger integration (Toflar)
  • Remove the process timeout in the SuperviseWorkersCommand (md-netdesign)
  • Undeprecate using $model->classes (aschempp)
  • Cache relative paths in the ContaoFilesystemLoader (m-vo)
  • Replace insert tags when parsing widget templates (fritzmg)
  • Use the original ID for nested fragments if available (aschempp)
  • Fix more edge cases in the HtmlAttributes class (ausi)
  • Overwrite the page metadata before parsing the news article (lukasbableck)
  • Fix an endless loop in the DC_Folder::getParentFilemounts() method (leofeyer)
  • Do not trigger the PHP header() deprecation for certain headers (fritzmg)

5.3.9

Bug Fixes
  • Invalidate the pagemounts cache in the back end access voter when duplicating a page (lukasbableck)
  • Remove a redundant strlen() check (leofeyer)
  • Correctly set the status code of the fallback route to 404 (veronikaplenta)
  • Make Twig 3.10.2 the minimum requirement (leofeyer)
  • Fix the CSS class of legacy templates in new elements and modules (veronikaplenta)

5.3.8

Bug Fixes
  • Handle quoted columns names in the boolean fields migration (ausi)
  • Skip permissions checks for child records (aschempp)
  • Hide migrated news feeds in the navigation menu (leofeyer)
  • Fix the ParsedSequence::serialize() method (ausi)
  • Allow contao.insert_tag tags without method and priority (fritzmg)
  • Do not use the deprecated replaceInsertTags hook (ausi)
  • Check access to fieldsOfTable for the file edit operation (aschempp)
  • Show all page types in the help wizard (leofeyer)
  • Allow hyphens in custom legacy template names (fritzmg)
  • Add the component style sheets before the user style sheets (leofeyer)
  • Implode arrays recursively when showing undo records (leofeyer)
  • Allow to move an error page within its root (aschempp)
  • Correctly set the defer attribute for combined deferred scripts (ReneLuecking)
  • Use the new onpalette_callback to unset fields in the file manager (aschempp)
  • Fix invalid HTML markup in splash screens (bennyborn)
  • Store enum fields in the DCA extractor cache (SeverinGloeckle)
  • Fix non-existent "contao.image.image_factory" in FeedItem.php (stefansl)
  • Disable the search index listener in the back end (Toflar)
  • Fix the PHP subprocess call once again (Toflar)
  • Catch the URL generator exception in the news insert tag (qzminski)
  • Test the deserialize Twig filter (ausi)
  • Add a deserialize Twig filter (leofeyer)

5.3.7

Bug Fixes
  • Make the member group voter cacheable (aschempp)
  • Make the PhpTemplateProxyNode class compatible with Twig 3.9 (ausi)
  • Fix the elements check in the sectionwizard.js script (qzminski)
  • Use PhpSubprocess instead of Process in the ProcessUtil class (Toflar)

5.3.6

Bug Fixes
  • Ensure compatibility with Twig 3.9 (leofeyer)
  • Handle empty strings in the StringResolver class (qzminski)

5.3.5

Bug Fixes
  • Fix the order of the media block in the text element markup (ausi)
  • Use Encore to minify the SVG icons (leofeyer)
  • Add the missing styles to the new table element (zoglo)
  • Enable the sortAttrs option in the SVGO configuration (leofeyer)
  • Fix the elements check in the modulewizard.js script (qzminski)
  • Use display: grid in the image gallery preview (zoglo)
  • Initialize Handorgel on the element (zoglo)
  • Add the missing WysiwygStyleProcessor autowiring alias (Toflar)
  • Also unset the disable, start and stop fields when an admin edits themselves (aschempp)
  • Cache SQL queries in the page type voter (aschempp)
  • Fix some edge cases when parsing HTML style attributes (ausi)

5.3.4

Security
CVE-2024-28235: Session cookie disclosure in the crawler
CVE-2024-28190: Cross site scripting in the file manager
CVE-2024-28191: Insert tag injection via the form generator
CVE-2024-28234: Insufficient BBCode sanitization

5.3.3

Bug Fixes
  • Fix a bug in setIfExists() with Stringable objects (ausi)
  • Fix double encoding/decoding in the HtmlAttributes class (ausi)

5.3.2

Highlights
  • Add the csp_unsafe_inline_style Twig filter (ausi)

Bug Fixes
  • Revert the changes to the "file uploaded" check (fritzmg)
  • Harden mime type handling in the FilesystemItem class (m-vo)
  • Show headlines in article teasers again (zoglo)
  • Use the fragment registry in the debug:fragments command (bytehead)
  • Allow version 5 of lcobucci/jwt (leofeyer)
  • Register theme templates in the global namespace, too (ausi)
  • Enable collapsible fieldsets without storage (aschempp)
  • Override the access decision strategy instead of the manager (aschempp)
  • Fix a PHP 8 warning in the tl_article.getActiveLayoutSections() method (qzminski)
  • Fix the traceable access decision manager (aschempp)
  • Return to the list view after adding items to the clipboard (aschempp)
  • Use voters for theme permissions (aschempp)
  • Add the user access voter (aschempp)
  • Fix the front end module permissions (aschempp)
  • Make the ParentAccessTrait::hasAccessToParent() method private (aschempp)
  • Improve permission error message for DCA actions (aschempp)
  • Set the email message priority to "high" (Toflar)
  • Disable background workers if they are not supported (Toflar)
  • Convert protocol-relative URLs in the string resolver (aschempp)

5.3.1

Highlights
  • Register the dotenv:dump command by default in the Contao managed edition (Toflar)

Bug Fixes
  • Cache Image::getHtml() to speed up the tree view (Toflar)
  • Fix the newsfeed migration (aschempp)
  • Use Model::findById() instead of Model::findByPk() (leofeyer)
  • Show the route configuration in the news feed page (aschempp)
  • Fix the dotenv:dump command (aschempp)
  • Allow using insert tags in image alt and title attributes (leofeyer)
  • Deprecate inheriting CSS classes in nested elements (aschempp)
  • Use UrlUtil::makeAbsolute() when converting relative URLs (leofeyer)
  • Fix a type error in the login module (aschempp)
  • Use attrs().mergeWith() in Twig templates (leofeyer)
  • Make sure the .env.local.php is loaded correctly (Toflar)
  • Fix double inheritance of legacy templates in Twig (ausi)
  • Correctly register the AutoRefreshTemplateHierarchyListener (m-vo)
  • Fix that the guests migration only migrates one field at a time (aschempp)
  • Correctly generate the URLs to subscribe to comments (leofeyer)
  • Improve the performance of the database dumper (Toflar)
  • Correctly check if a "jump to" page is set when generating event feeds (leofeyer)
  • Make full authentication optional in the personal data module (leofeyer)
  • Handle unicode strings in insert tag flags (ausi)
  • Add a button to the "invalid request token" template (leofeyer)
  • Correctly implement the ImageFactoryInterface (leofeyer)
  • Fix the Twig loader infrastructure (m-vo)
  • Use files instead of data: resources to avoid breaking CSP (leofeyer)
  • Only make string URL absolute if it does not have a scheme (aschempp)
  • Fix two CSS issues (leofeyer)

Läs mer: https://github.com/contao/contao/blob/5.3.20/CHANGELOG.md

5.3.0

(större version)
21 Februari 2024 - 210MB5.3.0

Fixed Issues
  • Handle routing exceptions during news and event URL generation (fritzmg)
  • Improve logging of request parameters (aschempp)
  • Add type="button" to the accordion toggler (fritzmg)
  • Fix the column name in the "remember me" migration (aschempp)
  • Move adding the schema.org data to the _download.html.twig component (leofeyer)
  • Correctly cache Contao translations that only exist as Symfony translations (fritzmg)
  • Always allow the "read" action in the front end modules voter (bezin)
  • Correctly handle dark icons in data-icon and data-icon-disabled (zoglo)

5.3.0-RC4

New Features
  • Allow adding a source to multiple CSP directives at once (aschempp)
  • Remove the @internal flag from the backup manager (Toflar)

Fixed Issues
  • Make the commands lazy again (leofeyer)
  • Fix the TemplateOptionsListener (fritzmg)
  • Correctly initialize multiple accordions on the same page (leofeyer)
  • Hide the trail in the SERP preview if no URL can be generated (leofeyer)
  • Add the "toggle visibility" button for articles and content elements again (aschempp)
  • Fix the "remember me" migration (leofeyer)
  • Cast the template identifier to string (leofeyer)

5.3.0-RC3

New Features
  • Focus the first input/textarea after duplicating a wizard row (leofeyer)
  • Add a global Twig variable with Contao state (aschempp)
  • Add a basic entity for zero-width whitespaces (aschempp)

Fixed Issues
  • Rewrite Controller::getParentEntries() (ausi)
  • Handle dynamic parent tables in the Controller::getParentEntries() method (leofeyer)
  • Fix relative front end preview links (aschempp)
  • Keep login module errors (aschempp)
  • Fix the article content voter (aschempp)
  • Remove obsolete hardcoded configuration in the page registry (aschempp)
  • Do not require full authentication in the "change password" module (leofeyer)
  • Fix the referrer URL if elements are moved inside a nested element (leofeyer)
  • Fix routes with parameters in the SERP widget (aschempp)
  • Correctly set the target path in the login module (leofeyer)
  • Fix the order of the content elements (aschempp)
  • Correctly handle denied access in the firewall (aschempp)
  • Drop the custom "remember me" implementation (aschempp)
  • Improve the debug message for FigureBuilder link attributes (aschempp)
  • Mark $secret as sensitive parameter (aschempp)
  • Fix ptable for copyAll and cutAll (ausi)

5.3.0-RC2

New Features
  • Add a Twig function to generate content URLs (aschempp)
  • Support CSP on WYSIWYG editors like TinyMCE (Toflar)

Fixed Issues
  • Use the content URL generator in the redirect page controller (aschempp)
  • Remove the @internal flag from the HTTP cache subscribers (leofeyer)
  • Improve how headlines can be adjusted in Twig (m-vo)
  • Increase the z-index of the jump targets (zoglo)
  • Use the inputUnit widget for the section headline field (leofeyer)
  • Use autoconfiguration where possible (leofeyer)
  • Limit the CSP header size to avoid server errors (Toflar)
  • Correctly set the link title and text in the downloads controller (fritzmg)
  • Normalize the Twig CSP method names (fritzmg)
  • Fix the "delete files" button in the file manager (aschempp)
  • Add the TemplateTrait::inlineStyle() method (fritzmg)
  • Properly assign parameters to contao.crawl.escargot.factory (zoglo)
  • Unify the deprecation messages (leofeyer)

5.3.0-RC1 (2024-01-18)

New Features
  • Generate newsletter URLs using the content URL generator (aschempp)
  • Generate FAQ URLs using the content URL generator (aschempp)
  • Generate news URLs using the content URL generator (aschempp)
  • Generate event URLs using the content URL generator (aschempp)
  • Implement the content URL generator (aschempp)
  • Add the ability to set Content Security Policies (fritzmg)
  • Add a Stimulus controller to handle scrolling in the back end (zoglo)
  • Implement the redirect page as page controller (fritzmg)
  • Add a description list content element (aschempp)
  • Add canonical links to news and events (aschempp)
  • Add the page permission voters (aschempp)
  • Implement front end module permissions (bezin)
  • Add an image size voter (aschempp)
  • Add enum support for DCAs and models (SeverinGloeckle)
  • Add more database indexes (Toflar)
  • Decouple the calendar, FAQ and news bundles from the comments bundle (zoglo)
  • Allow adding a "lost password" page to the login module (zoglo)
  • Add the DNS mapping migration (fritzmg)
  • Add a VFS decorator that supports user permissions (m-vo)
  • Optimize the MySQL indexes (leofeyer)
  • Sort options by key if they use language references (leofeyer)
  • Inline the CSS from a newsletter template before sending (leofeyer)
  • Add a modern content slider element (leofeyer)
  • Properly name the worker supervision cron (Toflar)
  • Use the attributes_callback to make the logout redirect mandatory (aschempp)
  • Add a z-index to the limit toggler (zoglo)
  • Sync the logic to generate multiple aliases (aschempp)
  • Implement worker supervision (Toflar)
  • Do not load style sheets lazily by default (leofeyer)
  • Add a modern accordion element (leofeyer)
  • Automatic login for cross-domain preview links (aschempp)
  • Add a voter for tl_newsletter_recipients (aschempp)
  • Add a voter for tl_undo (aschempp)
  • Add the onpalette_callback (aschempp)
  • Automatically enable the Strict Transport Security (HSTS) header (Toflar)
  • Rename "childs" to "children" (leofeyer)
  • Nested content elements (ausi)
  • Add more security voters (leofeyer)
  • Sort the tables in the database backup (de-es)
  • Unify the deprecation messages (leofeyer)
  • Remove column from articles URL (aschempp)
  • Add a tab menu to jump to palette sections (leofeyer)
  • Make Symfony 6.4 the minimum version (leofeyer)
  • Show the back end header on scroll-up (leofeyer)
  • Make the back end header sticky on all devices (leofeyer)
  • Use the picker to select article target in news and calendar (aschempp)
  • Populate contao_ Symfony translations into $GLOBALS['TL_LANG'] (fritzmg)
  • Rewrite tree mode toggling to Stimulus controller (aschempp)
  • Implement a global "expand/collapse elements" button (aschempp)
  • Register a web processor to add log extras (aschempp)
  • Automatically generate the global operations (aschempp)
  • Make the downloads controller more flexible for own sources (Toflar)
  • Automatically translate the default maintenance template (Toflar)
  • Add schema.org support to the virtual file system (Toflar)
  • Automatically load routes in app controllers (aschempp)
  • Allow to re-use the ProcessUtil data (Toflar)
  • Add the event end date to the schema.org data (leofeyer)
  • Add a maximum duration for the back end crawler (leofeyer)
  • Make the back end crawler configurable (leofeyer)
  • Wrap the news date and author in a template block (leofeyer)
  • Replace insert tag flags based on the context (leofeyer)
  • Clean up a TODO (Toflar)
  • Deprecate the MergeHttpHeadersListener class (leofeyer)
  • Rename the templates/_new folder to templates/twig (leofeyer)
  • Remove the BC layers in the ContaoCache class (fritzmg)
  • Deprecate the System::setCookie() method (Toflar)
  • Allow array for page parameters (aschempp)
  • Upgrade the Symfony contracts (leofeyer)
  • Remove the "roave/better-reflection" dependency (leofeyer)
  • Make doctrine/dbal 3.6 the minimum version (leofeyer)
  • Upgrade doctrine/collections and doctrine/persistence (leofeyer)
  • Make Symfony 6.3 the minimum version (leofeyer)
  • Set auto password hasher for all user classes (fritzmg)
  • Always set the JSON_THROW_ON_ERROR flag (leofeyer)
  • Use createElementNS for namespaced XML elements (ausi)

Fixed Issues
  • Introduce TemplateTrait to fix missing method in Widget (fritzmg)
  • Fix edit-all operation if records can only be deleted (aschempp)
  • Fix the missing icon for DCA operations again (aschempp)
  • Remove the contao.downloadable_files parameter (leofeyer)
  • Correctly set the ptable for copy and cut actions (ausi)
  • Use the _attributes suffix in the accordion template (leofeyer)
  • Fetch visible root trail record from database (aschempp)
  • Only check the first record to be restored (aschempp)
  • Move ptable logic from tl_content to DC_Table (ausi)
  • Fix missing ptabe for saveNcreate and saveNduplicate (ausi)
  • Vote on the current token in the voters (aschempp)
  • Fix DCA voters not checking module and parent update access (aschempp)
  • Fix favorites voter not voting on current record (aschempp)
  • Deprecate the PageModel::getPreviewUrl() method (aschempp)
  • Check for parameter existence (Toflar)
  • Move the ModelMetadataTrait to the correct namespace (leofeyer)
  • Do not smooth-scroll on devices with reduced motion (aschempp)
  • Also remove global operations in bundles (aschempp)

Läs mer: https://github.com/contao/contao/blob/5.3.0/CHANGELOG.md

5.4.8

(större version)
2 Januari - 250MB5.4.8

Bug Fixes
  • Make the SERP preview script compatible with Turbo (fritzmg)

5.4.7

Bug Fixes
  • Fix a JS performance issue related to the registration of tooltips (m-vo)

5.4.6

Bug Fixes
  • Disable Turbo in MODE_PARENT content section (fritzmg)
  • Revert 'Add the turbo-root meta tag to the back end' (fritzmg)

5.4.5

Bug Fixes
  • Adjust the tooltip performance (zoglo)
  • Add an ALTCHA noscript warning message (CMSworker)
  • Canonicalize purge paths (fritzmg)
  • Make the slots concept compatible with Twig 3.15 (m-vo)

5.4.4

Bug Fixes
  • Correctly set the ACE editor height (leofeyer)
  • Fix the tooltips on mobile devices (fritzmg)
  • Add the turbo-root meta tag to the back end (aschempp)
  • Add display: grid for subpalettes on Ajax requests (zoglo)
  • Add the missing widget-group classes (fritzmg)

5.4.3

Security
CVE-2024-45398: Remote command execution through file uploads
CVE-2024-45612: Insert tag injection via canonical URLs

5.4.2

Bug Fixes
  • Always break out of Turbo frames when missing (fritzmg)
  • Switch to a stable ALTCHA version (leofeyer)
  • Disable Turbo for the 2FA backup codes form (leofeyer)
  • Fix the loading time of the code editor (leofeyer)

5.4.1

Bug Fixes
  • Fix the line height of the ellipsis containers (leofeyer)
  • Add a Stimulus controller to handle back end tooltips (zoglo)
  • Use Turbo.cache.exemptPageFromCache() in the SERP preview script (leofeyer)
  • Do not initialize Chosen twice in the module wizard (leofeyer)
  • Ensure that $this->style is never null (leofeyer)
  • Disable Turbo on theme import forms (zoglo)

5.4.0

Bug Fixes
  • Deprecate the service annotations (leofeyer)

5.4.0-RC4

Bug Fixes
  • Use <turbo-frame> for DataContainer::edit() and fix other Turbo issues (fritzmg)
  • Fix the Twig deprecations (ausi)

5.4.0-RC3

Bug Fixes
  • Fix several Turbo issues (m-vo)
  • Allow ALTCHA version 0.7 (leofeyer)
  • Simplify the automatic ACE editor height (m-vo)
  • Revert 'Move the assets folder to public/assets' (leofeyer)
  • Add a Stimulus controller to configure TinyMCE instances (m-vo)
  • Add a note about $GLOBALS['objPage'] to the DEPRECATED.md file (leofeyer)

5.4.0-RC2

Bug Fixes
  • Load the TinyMCE and ACE scripts within be_main (zoglo)
  • Show a warning if ALTCHA is used with an insecure connection (leofeyer)
  • Fix the contao-setup command (leofeyer)
  • Disable Turbo on editAll and overrideAll forms (fritzmg)

5.4.0-RC1

Highlights
  • Add an "ARIA label" field to the navigation module (leofeyer)
  • Add basic support for hotwired/turbo in the back end (m-vo)
  • Store the back end popup session bag under a different storage key (fritzmg)
  • Add Twig slots (m-vo)
  • Move the assets folder to public/assets (leofeyer)
  • Add an ALTCHA form field to the form generator (markocupic)
  • Add more spacing in the back end views (leofeyer)
  • Update the file icons in the file manager (leofeyer)
  • Allow Symfony 7 (Toflar)
  • Update Monolog to version 3 (Wusch)
  • Use Lucide icons in the back end (leofeyer)
  • Add sitemap information to the tl_page.robots help text (stefansl)
  • Allow TinyMCE 7 (leofeyer)
  • Use HtmlAttributes for fe_page (fritzmg)
  • Use the attr() method in templates (leofeyer)
  • Render widget groups in the back end with CSS grid (zoglo)
  • Add a rich text Twig component (m-vo)
  • Replace $GLOBALS['objPage'] in the model argument resolver (leofeyer)
  • Replace $GLOBALS['objPage'] in the filesystem loader (leofeyer)
  • Replace $GLOBALS['objPage'] in the fragment handler (leofeyer)
  • Add the PageFinder::getCurrentPage() method (leofeyer)
  • Fallback to the current request in the scope matcher (leofeyer)
  • Remove the InterestCohortListener (bytehead)
  • Allow to configure the components-dir (richardhj)

Bug Fixes
  • Use the minified version of the ALTCHA scripts (leofeyer)
  • Remove the redundant m12 CSS class (leofeyer)
  • Add the missing dark icons (leofeyer)
  • Fix the icon sizes (leofeyer)
  • Use CSS grid to align checkboxes and their labels and drag handles (leofeyer)
  • Fix the .nogrid backwards compatibility layer (leofeyer)

Läs mer: https://github.com/contao/contao/blob/5.4.8/CHANGELOG.md

5.1.10

(större version)
31 Juli 2023 - 210MB5.1.10

Security
  • Validate unit select menus in widgets (ausi)

5.1.9

Bug Fixes
  • Correctly encode URLs in the sitemap (aschempp)
  • Increase Symfony filesystem dependency version (ausi)
  • Remove field permissions on favorites table (aschempp)

5.1.8

Bug Fixes
  • Log the bad credentials exception in the security channel (bytehead)
  • Support vimeo unlisted video privacy hash (ausi)
  • Skip insert tags when converting relative URLs (leofeyer)
  • Fix a typo in the _download component (fritzmg)
  • Allow saving serialized strings in DC_File again (zoglo)

5.1.7

Bug Fixes
  • Add a title to the collapsed element button (aschempp)
  • Improve the main navigation hover style (aschempp)
  • Pass the ID to getCurrentRecord() in "override all" mode (leofeyer)
  • Fix the list and table wizards in news and events (leofeyer)

5.1.6

Bug Fixes
  • Hide fields that are not to be displayed in the undo details (leofeyer)

5.1.5

Bug Fixes
  • Add a double encoding setting to the HtmlAttributes class (ausi)
  • Unwrap response exceptions thrown while rendering a template (m-vo)
  • Use the title instead of the filename in the download component (m-vo)

5.1.4

Bug Fixes
  • Harden the file manager against directory traversal attacks (ausi)

5.1.3

Bug Fixes
  • Correctly count the skipped recipients (leofeyer)
  • Add the header.svg and settings.svg icons again (leofeyer)
  • Load the default language when generating the calendar feeds (leofeyer)
  • Prevent double slashes in version URLs (leofeyer)
  • Add the "adjustDca" load callback to tl_news_archive again (leofeyer)
  • Do not treat sub-directories of Twig namespace roots as template paths (m-vo)
  • Correctly pass null values in findBy queries (ausi)

5.1.2

Bug Fixes
  • Fix bug in Hybrid::generate() with missing ID (ausi)
  • Add a unit test for invalid files to the ImagesController (m-vo)
  • Filter non-image files in the ImagesController (leofeyer)
  • Handle null in the html.html.twig template (fritzmg)
  • Handle basic entities in the SERP preview (leofeyer)
  • Allow using basic entities in texts (heimseiten)
  • Allow using basic entities in headlines (leofeyer)
  • Add the missing data container permission checks (aschempp)
  • Always allow toggling a field that is not excluded (aschempp)

5.1.1

Bug Fixes
  • Add the TokenDeauthenticatedListener (bytehead)
  • Explicitly set the legacy template in the TwoFactorController (m-vo)
  • Fix the split button alignment (leofeyer)
  • Surround the togglePassword images with a button (cliffparnitzky)
  • Fix deleting multiple records (Toflar)
  • Add missing type hints to translation classes (ausi)
  • Remove tl_settings.doNotCollapse (aschempp)
  • Return BinaryFileResponse when handling downloads (m-vo)
  • Fix PHPUnit deprecation warnings (m-vo)
  • Move the favorites voter to the correct namespace (aschempp)

5.1.0

Bug Fixes
  • Do not deep merge messenger workers (Toflar)
  • Fix header notification color (ausi)

5.1.0-RC3
5.1.0-RC2

Bug Fixes
  • Do not require overwriting the console path (leofeyer)
  • Use the HTML sanitizer component as Twig filter (ausi)
  • Fix the module wizard (leofeyer)
  • Fix the Gulp watch task (fritzmg)
  • Make $consolePath a required argument (leofeyer)
  • Use two different icons for light and dark mode (leofeyer)
  • Correctly toggle the favorites menu group (leofeyer)
  • Move the dark mode toggle to the header bar (leofeyer)
  • Make console_path a general Contao configuration (Toflar)
  • Fix the icons when toggling structures in dark mode (leofeyer)

5.1.0-RC1

Highlights
  • Add a new feed reader implementation (bezin)
  • Allow to pass an array of allowed attributes to Input::stripTags() (leofeyer)
  • Add more back end grid classes (leofeyer)
  • Add an attributes_callback for DCA fields (aschempp)
  • Allow a minimum amount of workers for autoscaling (Toflar)
  • Add the URI and page ID to log entries (SeverinGloeckle)
  • Check the administrator e-mail address (fritzmg)
  • Introduce background workers (Toflar)
  • Implement a dark scheme toggle (aschempp)
  • Enable the login rate limit (bytehead)
  • Also minify the core.js and mootao.js scripts with Webpack (leofeyer)
  • Add a dark mode for the back end (leofeyer)
  • Support the native date input type for text fields in the form generator (fritzmg)
  • Add a confirmation message to forms and provide Ajax out of the box (qzminski)
  • Add error handling to the form data processing (rabauss)
  • Allow sorting DCA fields ascending and descending (aschempp)
  • Add a button to copy multiple records and paste them multiple times (aschempp)
  • Remove localconfig.disableCron in favor of a new zero config approach (Toflar)
  • Adjust the name of the default guests group (leofeyer)
  • Add the MemberActivationMailEvent (fritzmg)
  • Add the #[\SensitiveParameter] attribute (ausi)
  • Allow to set the locale in Template::trans (fritzmg)
  • Improve the content elements view (leofeyer)
  • Use CSS variables for all colors and CSS classes instead of inline styles (leofeyer)
  • Add a favorites menu in the back end (leofeyer)
  • Also add the new "idempotent actions" logic to DC_Folder (leofeyer)
  • Add stimulus controllers in the back end (aschempp)
  • Add support for async CLI cron jobs (Toflar)
  • Disable the request token check for idempotent actions (aschempp)
  • Allow defining a default search field (leofeyer)
  • Add a user option to not collapse content elements (aschempp)
  • Use sendfile for local files downloads (m-vo)
  • Change the default value for tl_layout.viewport (leofeyer)
  • Add a markdown help text (leofeyer)
  • Add a lock overlay for protected articles (leofeyer)

Bug Fixes
  • Fix the skippable cronjobs (fritzmg)
  • Add isRequired() for desired_size and max settings on workers (Toflar)
  • Add a default value for the worker "min" configuration (Toflar)
  • Do not add the request token to idempotent actions (leofeyer)
  • Skip cron execution for minutely cron and messenger cron in web scope (Toflar)
  • Fix the tree indentation (leofeyer)
  • Only hide the dark/light theme icons via CSS (leofeyer)
  • Ensure Doctrine connections are closed after message handling (Toflar)
  • Use enumNode instead of custom validation (Toflar)
  • Correctly open and close tree nodes if there is a filter (leofeyer)
  • Fix the aria-hidden attribute in the tips.js file (leofeyer)

Läs mer: https://github.com/contao/contao/blob/5.1/CHANGELOG.md

Live Demo ger demonstrations instanser av Contao för utvärderingssyfte. Live Demo instanser ställs ofta och är konfigurerade utan plugins eller teman.

5.3.33

Front-end View

4.13.54

Front-end View
© 2004 - 2025 Installatron LLC. All rights reserved. Privacy Policy.