Activity
From 2020-05-03 to 2020-06-01
2020-06-01
- 20:25 Revision c1506d69: [!!!][TASK] Remove DelegateInterface related code from core
- Resolves: #91551
Releases: master
Change-Id: If26ad358d0a8ef750d983a7221e4d000d4b8cd4f
Reviewed-on: https://review.ty... - 20:11 Revision f3e4dc32: [BUGFIX] Show hidden records that are unhidden in workspace
- When a live record that is hidden, but gets unhidden in a
workspace version, the record should also be resolved withi... - 20:10 Revision 36e800bb: [!!!][TASK] Remove backend module related deprecated code
- The T3_RETURN_URL and T3_THIS_LOCATION javascript constants
are removed, in addition to all code relevant in ModuleCo... - 19:56 Revision 561f95ba: [BUGFIX] Show hidden records that are unhidden in workspace
- When a live record that is hidden, but gets unhidden in a
workspace version, the record should also be resolved withi... - 11:53 Revision 34ff0a40: [!!!][TASK] Remove deprecated code from Record History
- Resolves: #91544
Related: #91473
Releases: master
Change-Id: I04ce71e83d6e98835c8a8c29e82398d43de2af5c
Reviewed-on: h... - 08:58 Revision 70e68b22: Merge pull request https://github.com/TYPO3-CMS/styleguide/issues/142 from susannemoog/master
- [TASK] styleguide: New CI Setup + Cleanup
2020-05-31
- 15:52 Revision 4c6d801e: [!!!][TASK] Various deprecation removals
- Various classes and methods are removed, that have been marked
as deprecated before.
Resolves: #91543
Related: #9147... - 14:10 Revision a48ec2dc: [!!!][TASK] Remove pi-base plugin of felogin
- The feature "felogin.extbase" is now always activated.
The class
* TYPO3\CMS\Felogin\Controller\FrontendLoginControl... - 10:15 Revision b5f34156: [TASK] Reduce inline JavaScript in ext:setup
- This change aims to reduce the amount of inline JavaScript by
removing `onchange` or `onclick` events and dynamically... - 09:58 Revision c87e8e6d: [TASK] Reduce inline JavaScript in ext:setup
- This change aims to reduce the amount of inline JavaScript by
removing `onchange` or `onclick` events and dynamically... - 09:10 Revision 7ca6021e: [!!!][TASK] Remove deprecated autocomplete widget
- The Fluid widget <f:widget.autocomplete> has been deprecated in TYPO3
10 and is now removed without any replacement.
... - 08:37 Revision 98cf5d69: [!!!][TASK] Remove support for deprecated CLI command configuration
- Configuration via Commands.php had been superseded by tag based
DI service configuration which allowed to configure D... - 07:31 Revision 55eb17f2: [TASK] Remove legacy font formats
- eot, otf and ttf font formats were used to support very old browsers
like <= IE8. Since TYPO3 v10 does only support m... - 07:10 Revision 4bf7f4a1: [TASK] Remove legacy font formats
- eot, otf and ttf font formats were used to support very old browsers
like <= IE8. Since TYPO3 v10 does only support m...
2020-05-30
- 20:33 Revision 15dbf20a: [BUGFIX] Only send no_cache parameter if not disabled
- If $TYPO3_CONF_VARS[FE][disableNoCacheParameter] is
set, then the backend view button in FormEngine should
not add th... - 19:49 Revision bfa69a5e: [!!!][TASK] Remove deprecated Extbase Domain Models / Repositories / Converters
- The following classes are removed:
- TYPO3\CMS\Extbase\Domain\Model\AbstractFileCollection
- TYPO3\CMS\Extbase\Domai... - 13:51 Revision 70a88b75: [TASK] Rephrase notifications in Admin Tools
- This patch rephrases the notifications rendered in the Admin Tools. Some
notifications now contain a better descripti... - 13:34 Revision ddb5310a: [!!!][TASK] Remove deprecated FAL functionality
- The following FAL related core methods have been removed:
* Resource\File-> _getMetaData
* Resource\FileRepository->s... - 13:19 Revision f65802b8: [!!!][TASK] Remove deprecated class aliases
- The following class aliases are removed:
* `TYPO3\CMS\Frontend\Page\PageRepository`
* `TYPO3\CMS\Frontend\Page\PageR... - 13:07 Revision ef3af1af: [!!!][TASK] Remove deprecated TSFE properties
- The unused properties are removed
* $TSFE->divSection
* $TSFE->domainStartPage
* $TSFE->fePreview
* $TSFE->sys_langu... - 12:59 Revision d26efc02: [TASK] Rephrase notifications in Admin Tools
- This patch rephrases the notifications rendered in the Admin Tools. Some
notifications now contain a better descripti... - 12:40 Revision 4af5abc5: [TASK] Cleanup runtimeActivatedPackages deprecation removal
- Remove a stale comment wrt PackageManager->activePackageDuringRuntime()
as that method has been removed in #91477. Dr... - 10:16 Revision 7c89b343: [TASK] Switch to json_encode for tx_cms_showpic parameters
- Scalar values sent via HTTP query parameters to ShowImageController
are using `json_encode` instead of `unserialize`.... - 10:16 Revision b1810f8e: [TASK] Switch to json_encode for tx_cms_showpic parameters
- Scalar values sent via HTTP query parameters to ShowImageController
are using `json_encode` instead of `unserialize`.... - 10:15 Revision 55fd3c16: [TASK] Switch to json_encode for tx_cms_showpic parameters
- Scalar values sent via HTTP query parameters to ShowImageController
are using `json_encode` instead of `unserialize`.... - 09:50 Revision fbeb1675: [!!!][TASK] Remove deprecated functionality in ContentObjectRenderer
- All deprecated code within ContentObjectRenderer is removed.
This also includes hooks
* $GLOBALS['TYPO3_CONF_VARS']... - 09:47 Revision b3bd3ceb: [!!!][TASK] Remove v8->v9 upgrade wizards
- Upgrade wizards created to upgrade from v8 to v9
are removed now.
Resolves: #91478
Releases: master
Change-Id: I12ec... - 00:56 Revision b791a64c: [TASK] Remove leftover SIGNAL_PostProcessTreeData constant
- Constant should have been removed within #91474
Resolves: #91540
Related: #91474
Releases: master
Change-Id: I45081c... - 00:16 Revision 6b207cf2: [!!!][TASK] Remove deprecated TSFE code superseded by AssetCollector
- AssetCollector takes over logic that was previously built in TSFE, to decouple
more functionality from TSFE going mor...
2020-05-29
- 23:08 Revision 16735394: [!!!][TASK] Remove deprecated web response class
- The Web Response subclass of Extbase's MVC framework is removed
in favor of the main base Response object, which serv... - 22:55 Revision f1bc20d0: [!!!][TASK] Remove deprecated "forceTemplateParsing" option
- The public property "forceTemplateParsing" in TSFE and TemplateService
is substituted in favor of the Context API (Ty... - 22:20 Revision 8a4acb72: [!!!][TASK] Remove deprecated web request class
- The Web request class is removed in favor of Extbase's
base request object.
For this change, the testing framework h... - 21:36 Revision d4d97e2b: [!!!][TASK] Remove deprecated method ObjectAccess::buildSetterMethodName
- Releases: master
Resolves: #91535
Related: #91473
Change-Id: I98db08e8fef297b47bd11fed13d3fe91af3ba1cd
Reviewed-on: h... - 21:33 Revision 533b5019: [!!!][TASK] Remove cHash options from UriBuilders, ViewHelper + Routing
- The cHash options in ViewHelpers and UriBuilders were a no-op
in TYPO3 v10 and Site Handling, and triggered deprecati... - 21:03 Revision c1d8f4e7: [!!!][TASK] Remove deprecated code from FormEngine
- Resolves: #91486
Releases: master
Change-Id: I4767e5395aad52fbe14f37d74af37609cd69e4ff
Reviewed-on: https://review.ty... - 20:58 Revision fcbc68f3: [!!!][TASK] Remove language-related deprecated functionality
- The global variable 'LOCAL_LANG' is now removed, as all labels
should always be fetched via LanguageService.
In addi... - 19:39 Revision e15776cd: [!!!][TASK] Remove deprecated functionality in DataHandler
- The Permission handling within DataHandler has been migrated
into PagePermissionAssembler in TYPO3 v10.
All other pr... - 17:47 Revision a957a676: [!!!][TASK] Remove deprecated AbstractController
- The class AbstractController is removed in favor of
ActionController within Extbase, where all extension
controllers ... - 17:32 Revision 3738e1bd: [!!!][TASK] Remove deprecated method TypeHandlingUtility::hex2bin
- The method is removed in favor of PHP's native hex2bin()
function.
Releases: master
Resolves: #91529
Related: #91473... - 17:27 Revision e6e5ffa7: [!!!][TASK] Remove deprecated constructor arguments in TSFE
- Since TYPO3 v10 the god-object TSFE is now built with
everything that is mandatory for rendering the Frontend:
* Cont... - 17:01 Revision 44e8b54b: [BUGFIX] Use hash_equals when comparing cryptographic hash values
- Resolves: #91510
Releases: master, 10.4, 9.5
Change-Id: I5bfda8310342718dc696b182fd87b1954a6cdc39
Reviewed-on: https:... - 16:41 Revision e758457a: [BUGFIX] Use hash_equals when comparing cryptographic hash values
- Resolves: #91510
Releases: master, 10.4, 9.5
Change-Id: I5bfda8310342718dc696b182fd87b1954a6cdc39
Reviewed-on: https:... - 16:35 Revision ca44f463: [TASK] styleguide: New CI Setup + Cleanup
- - Github CI Setup
- CGL Fixes
- Github Issue Templates
- PHPLint
- new Acceptance Test setup (incl. CodeCeption Upgrade) - 12:59 Revision 65448078: [!!!][TASK] Remove deprecated functionality in GeneralUtility
- The following deprecated methods are now removed:
- \TYPO3\CMS\Core\Utility\GeneralUtility::compressIPv6
- \TYPO3\CM... - 12:39 Revision 8d0509fc: [BUGFIX] Use hash_equals when comparing cryptographic hash values
- Resolves: #91510
Releases: master, 10.4, 9.5
Change-Id: I5bfda8310342718dc696b182fd87b1954a6cdc39
Reviewed-on: https:... - 12:31 Revision 8a24c013: [BUGFIX] Fix typo in exception of TcaRadioItems
- Resolves: #91501
Releases: master, 10.4, 9.5
Change-Id: I7b77a3ee8aceac2cbdb6f3d4e0a02930b66eb863
Reviewed-on: https:... - 12:07 Revision a2cfdec8: [BUGFIX] Acceptance Tests: wait for "Manage languages" being available
- Resolves: #91520
Related: #62085
Releases: master
Change-Id: I7bdda47bf1906fe4ad085265ef67fdcaa9a39380
Reviewed-on: h... - 10:41 Revision 81fb9230: [BUGFIX] Fix typo in exception of TcaRadioItems
- Resolves: #91501
Releases: master, 10.4, 9.5
Change-Id: I7b77a3ee8aceac2cbdb6f3d4e0a02930b66eb863
Reviewed-on: https:... - 10:14 Revision c5ec20b4: [!!!][TASK] Remove deprecated class DocumentTemplate
- One of the marker-based legacy class DocumentTemplate is now
removed for TYPO3 v11.
In addition, some tests regardin... - 10:13 Revision 13738a2a: [TASK] Provide acceptance test suite for stand alone Install Tool
- The acceptance tests folder 'InstallTool' holds tests that ensure
the proper display of options in the stand alone In... - 09:37 Revision 69b42225: [BUGFIX] Fix typo in exception of TcaRadioItems
- Resolves: #91501
Releases: master, 10.4, 9.5
Change-Id: I7b77a3ee8aceac2cbdb6f3d4e0a02930b66eb863
Reviewed-on: https:... - 09:30 Revision fad1b200: [!!!][TASK] Remove deprecated md5.js
- The library md5.js has been removed in favor of the
TYPO3/CMS/Backend/Hashing/Md5 module.
Resolves: #91485
Releases:...
2020-05-28
- 06:58 Revision 799d9f3a: [!!!][TASK] Remove deprecated code from backend.js
- Resolves: #91484
Releases: master
Change-Id: Ic589bd298b4f6892bb0459a1396d2d2b95d456f7
Reviewed-on: https://review.ty... - 06:57 Revision 5016ea36: [!!!][TASK] Remove deprecated module jquery.clearable
- The module `jquery.clearable` has been removed in favor of
TYPO3/CMS/Backend/Input/Clearable.
Resolves: #91483
Relea... - 06:57 Revision ff990fbb: [!!!][TASK] Remove deprecated functionality in BackendUtility
- The following previously deprecate static methods
are now removed:
- TYPO3\CMS\Backend\Utility\BackendUtility::getRa... - 06:56 Revision 8713405c: [!!!][TASK] Remove TCA + DB definition for pages_language_overlay
- The TCA schema and the database of page translations within "pages_language_overlay"
was still available for legacy r...
2020-05-26
- 22:31 Revision 4a0502ee: [!!!][TASK] Remove deprecated constants and runtime activated packages
- This change removes the unneeded public constants
- FILE_DENY_PATTERN_DEFAULT
- PHP_EXTENSIONS_DEFAULT
- TYPO3_copyr... - 20:58 Revision 0f947544: [!!!][TASK] Remove deprecated TSFE hooks and output functionality
- This change removes deprecated hooks and methods from TSFE
related to output:
* TSFE->isOutputting()
* TSFE->process... - 19:33 Revision 4dc79486: [!!!][TASK] Remove deprecated Signals from SignalSlot Dispatcher
- This change removes all triggers ("SlotReplacement classes") to Signals
that were used until TYPO3 v10 LTS.
The Sign... - 14:49 Revision e6646d04: [TASK] Raise friendsoftypo3/typo3-phpstan
- Used composer command:
composer req "friendsoftypo3/phpstan-typo3:^0.3.0" --dev
Resolves: #91494
Releases: master... - 12:59 Revision d73681a6: [BUGFIX] Add FIRST_INSTALL to .gitignore
- In order to avoid accidentally committing a FIRST_INSTALL
for developers starting to contribute to TYPO3 Core
and usi... - 10:25 Revision d33f7da6: [BUGFIX] Add FIRST_INSTALL to .gitignore
- In order to avoid accidentally committing a FIRST_INSTALL
for developers starting to contribute to TYPO3 Core
and usi... - 10:11 Revision ab7b019d: [BUGFIX] Add FIRST_INSTALL to .gitignore
- In order to avoid accidentally committing a FIRST_INSTALL
for developers starting to contribute to TYPO3 Core
and usi... - 08:26 Revision a3f486da: [TASK] Raise version to 11.0.0-dev
- This change reflects the master branch to be targeted to v11.
Testing framework is raised as well to support v11.
T...
2020-05-25
- 23:06 Revision 803d936b: [TASK] Add 10.4 builds to Bamboo
- Resolves: #91472
Releases: 10.4
Change-Id: I1a28d8a1f3d42bcc4e6fbbf0c328cd712927bb72
Reviewed-on: https://review.typo... - 21:19 Revision e20883e6: [BUGFIX] Use proper version range in Git hook
- Resolves: #91471
Releases: master, 10.4, 9.5
Change-Id: Ib008a46cc2edb368fed3fc937858f1f3870938b5
Reviewed-on: https:... - 21:19 Revision 3d51f2f9: [BUGFIX] Use proper version range in Git hook
- Resolves: #91471
Releases: master, 10.4, 9.5
Change-Id: Ib008a46cc2edb368fed3fc937858f1f3870938b5
Reviewed-on: https:... - 21:18 Revision 3fa9d7be: [BUGFIX] Use proper version range in Git hook
- Resolves: #91471
Releases: master, 10.4, 9.5
Change-Id: Ib008a46cc2edb368fed3fc937858f1f3870938b5
Reviewed-on: https:... - 18:38 Revision d1c9e409: [BUGFIX] Disallow deleting extensions in Composer mode
- Deleting an extension in Extension Manager doesn't make much sense in a
Composer-based installation. For this reason,... - 17:30 Revision de26b0b1: [BUGFIX] Avoid PHP 7.4 notices with nikic/php-parser
- TYPO3 v9 is loaded with nikic/php-parser 4.2.2, however
only 4.3.0 or higher fixed some PHP 7.4 compatibility
issues.... - 17:15 Revision f238fde4: [TASK] Cover BackendUserAuthentication->returnWebmounts() with test
- Also fix misleading comment about permissions.
Resolves: #91454
Releases: 9.5, master
Change-Id: I1a399f1be613f00744... - 17:12 Revision 2491f759: [BUGFIX] Disallow deleting extensions in Composer mode
- Deleting an extension in Extension Manager doesn't make much sense in a
Composer-based installation. For this reason,...
2020-05-23
- 10:19 Revision f2b9dacb: [BUGFIX] Correctly evaluate PageTS in TemplateModule
- Set the current page id early, so that PageTS is fetched
from the correct page instead of id 0.
Releases: 9.5, maste...
2020-05-22
- 21:57 Revision bd04cd12: [TASK] Add new file object to AfterFileCopiedEvent
- The PSR-14 event "AfterFileCopiedEvent" in FAL now also
has the possibility to return the newly created file
and the ... - 20:51 Revision 287e14c3: [BUGFIX] Allow to set replyTo email address in ext:felogin
- If the TypoScript variable `plugin.tx_felogin_pi1.replyTo` was set to
an email address, it triggered the following er... - 17:13 Revision 27709fd5: [TASK] Convert ckeditor4 sources from CRLF to LF in grunt npmcopy
- Git converts CRLF to LF when plaintext files are staged. The existing
copies of the rte_ckeditor Contrib/* sources ha... - 16:35 Revision 5a197af6: [TASK] Convert ckeditor4 sources from CRLF to LF in grunt npmcopy
- Git converts CRLF to LF when plaintext files are staged. The existing
copies of the rte_ckeditor Contrib/* sources ha... - 16:26 Revision 4055defe: [BUGFIX] Respect showHiddenFiles in filelist module
- Activating "showHiddenFilesAndFolders" in BE User
settings shows hidden files and folders also when
navigating throug... - 16:25 Revision 9932767b: [BUGFIX] Do not mark repeatable wizards executed during install
- The point of repeatable update wizards is that they are not
marked executed and thus always checked for possible upda... - 16:11 Revision 128828a5: [BUGFIX] Respect showHiddenFiles in filelist module
- Activating "showHiddenFilesAndFolders" in BE User
settings shows hidden files and folders also when
navigating throug... - 15:24 Revision 0fee8243: [TASK] Clean up admin panel types
- Resolves: #91457
Releases: master
Change-Id: I29009a9498b050942e34a27815acdf996e6f0539
Reviewed-on: https://review.ty... - 13:55 Revision e3ad2bd0: [TASK] Move iconFactory initialization out of loop
- Resolves: #91459
Relates: #91302
Releases: master
Change-Id: Ic4af3247d7557a6c12a8d538e85795c507eab69a
Reviewed-on: h... - 10:46 Revision 4bb09190: [BUGFIX] Bring back record type icons for select items
- With the removal of `selicon_field_path` in #87937 also the
automatic record type icon mapping was removed.
As a res... - 00:04 Revision fc4b3afd: [TASK] Improve descriptions of the rootline related methods
- To highlight difference between BackendUtility::BEgetRootLine()
and RootlineUtility->get()
Resolves: #91455
Releases...
2020-05-21
- 22:31 Revision 62f2c36f: [TASK] Improve descriptions of the rootline related methods
- To highlight difference between BackendUtility::BEgetRootLine()
and RootlineUtility->get()
Resolves: #91455
Releases... - 18:07 Revision 7971bc94: [BUGFIX] Prevent null pointer exception in LocalizationUtility
- Resolves: #91345
Releases: master
Change-Id: I54ab67e85b3bf24b06916b674765ed22fb5de76c
Reviewed-on: https://review.ty... - 15:02 Revision 2f2cfff8: [BUGFIX] Disable trigger buttons in Install Tool when actions are executed
- If an action in the Install Tool is executed that is related to an
inline module or an interactable module (a.k.a "mo... - 00:47 Revision 534e7cf7: [BUGFIX] Fix handling of deprecated cache configuration
- When initializing the configuration for a cache any existing
configuration under its old name (cache_ prefixed) is ap...
2020-05-20
- 15:11 Revision 9da9ffa8: [BUGFIX][DOCS] Clarify lowlevel cleanup commands
- The documentation for lowlevel commands are optimized so they make
more sense:
* Nightly checks are run with a --dry... - 13:57 Revision c96bf68c: [BUGFIX][DOCS] Clarify lowlevel cleanup commands
- The documentation for lowlevel commands are optimized so they make
more sense:
* Nightly checks are run with a --dry... - 11:52 Revision 1f5a5087: [TASK] Consistent version restrictions for PSR packages
- composer require "psr/http-message":"^1.0"
composer require "psr/log":"^1.0"
Releases: master, 9.5
Resolves: #89... - 10:41 Revision 6e69904b: [BUGFIX] Correctly evaluate PageTS in TemplateModule
- Set the current page id early, so that PageTS is fetched
from the correct page instead of id 0.
Releases: 9.5, maste...
2020-05-19
- 16:05 Revision 98644c6e: [TASK] Set TYPO3 version to 10.4.4-dev
- Change-Id: I22eb57766cd6ddd8aa31447ccd374e52920c2010
Reviewed-on: https://review.typo3.org/c/Packages/TYPO3.CMS/+/645... - 15:48 Revision b001e34a: [TASK] Set TYPO3 version to 9.5.19-dev
- Change-Id: I1b2efe8dc2ea1b559e5720984c9f9a8f7bf0fa4e
Reviewed-on: https://review.typo3.org/c/Packages/TYPO3.CMS/+/645... - 15:16 Revision 29ce7866: [RELEASE] Release of TYPO3 10.4.3
- Change-Id: Ifd8e3cc62c5b0a27b0bc938e5dbc8cb136a1d07c
Reviewed-on: https://review.typo3.org/c/Packages/TYPO3.CMS/+/645... - 15:10 Revision 257b8ad2: [RELEASE] Release of TYPO3 9.5.18
- Change-Id: I0f60f14a729ee231f6faa9e8bb1aa56e742cca15
Reviewed-on: https://review.typo3.org/c/Packages/TYPO3.CMS/+/645... - 15:06 Revision 8eb29dd2: [BUGFIX] Loosen site check for records not stored in site context
- When saving a record on a page that is not part of a site,
the slug field of this record, despite being set to "uniqu... - 14:51 Revision 1e766c5c: [BUGFIX] Loosen site check for records not stored in site context
- When saving a record on a page that is not part of a site,
the slug field of this record, despite being set to "uniqu... - 13:59 Revision 41f44495: [BUGFIX] Re-add initialization of PageRepository::$where_groupAccess
- Re-added `$this->where_groupAccess` to init method.
Resolves: #91429
Releases: master, 9.5
Change-Id: Ibd9b169e8d11e... - 13:39 Revision 5ccf6b21: [BUGFIX] Fixed order-by while querying old realurl table for slugs
- The old tx_realurl_pathcache does not have a uid field, but uses the
field cache_id. The order-by now uses a differen... - 12:54 Revision 78ea2ce3: [BUGFIX] Re-add initialization of PageRepository::$where_groupAccess
- Re-added `$this->where_groupAccess` to init method.
Resolves: #91429
Releases: master, 9.5
Change-Id: Ibd9b169e8d11e... - 11:46 Revision 712c24bc: [BUGFIX] Fixed order-by while querying old realurl table for slugs
- The old tx_realurl_pathcache does not have a uid field, but uses the
field cache_id. The order-by now uses a differen... - 00:00 Revision 8a137310: [BUGFIX] Allow referrer refresh in install tool
- With TYPO3-CORE-SA-2020-006 (SSRF via XSS) a strict referrer handling
has been introduced to avoid the install tool b...
2020-05-18
- 23:59 Revision 86b9b4a2: [BUGFIX] Allow referrer refresh in install tool
- With TYPO3-CORE-SA-2020-006 (SSRF via XSS) a strict referrer handling
has been introduced to avoid the install tool b... - 23:03 Revision 234d8387: [BUGFIX] Use checksum of frontend groups in cache identifier
- The generated cache identifier may get very long in case a page has many
frontend groups configured and may exceeds t... - 22:17 Revision 4d15cf21: [BUGFIX] Use checksum of frontend groups in cache identifier
- The generated cache identifier may get very long in case a page has many
frontend groups configured and may exceeds t... - 22:06 Revision cebeaf6c: [BUGFIX] Actually write cache for generated access field condition
- The manual backport of #91208 missed to actually write the calculcated
condition into the cache.
This patch adds the... - 17:17 Revision 2ce81ab6: [BUGFIX] Fix serialization of ObjectManager
- The PSR-11 container instance was not cleared upon serialization which
caused an exception when Closures in the conta... - 14:34 Revision 6d9e803c: [BUGFIX] Allow multiple referrer types in backend main route
- With TYPO3-CORE-SA-2020-006 (SSRF via XSS) a strict referrer handling
has been introduced to avoid the TYPO3 backend ... - 14:23 Revision b499cb83: [TASK] Add missing documentation for BackendUserConfigurationUpdate
- Resolves: #91417
Releases: master, 9.5
Change-Id: I690cf19965310cdb8612dca3b34f751aafb4c550
Reviewed-on: https://revi... - 14:22 Revision eda9a9a4: [BUGFIX] Properly (un)serialize ReflectionService
- The ReflectionService usually doesn't get serialized by users
directly but since Extbase has an unclean dependency ch... - 12:33 Revision d685d021: [TASK] Add missing documentation for BackendUserConfigurationUpdate
- Resolves: #91417
Releases: master, 9.5
Change-Id: I690cf19965310cdb8612dca3b34f751aafb4c550
Reviewed-on: https://revi... - 12:27 Revision 7c4699b2: [BUGFIX] Set controller object name for widget request
- While introducing the fully qualified controller class names
in the extbase plugin configuration the originally used ... - 12:13 Revision b9ace2c1: [BUGFIX] Properly (un)serialize ReflectionService
- The ReflectionService usually doesn't get serialized by users
directly but since Extbase has an unclean dependency ch... - 11:35 Revision 274e0282: [BUGFIX] Allow arbitrary objects in widget context
- TYPO3-CORE-SA-2020-005 cause side-effects on Fluid AJAX widgets which
unfortunatelly support any class instance to be... - 11:35 Revision 18e3f4f7: [BUGFIX] Allow arbitrary objects in widget context
- TYPO3-CORE-SA-2020-005 caused side-effects on Fluid AJAX widgets which
unfortunatelly support any class instance to b... - 10:52 Revision 794c2286: [DOCS] Fix table syntax in changelog
- Resolves: #91411
Releases: master
Change-Id: If9850f683e1f6e72e62fcfdb41802430d1888f69
Reviewed-on: https://review.ty... - 10:09 Revision fbafe16c: [BUGFIX] Allow multiple referrer types in backend main route
- With TYPO3-CORE-SA-2020-006 (SSRF via XSS) a strict referrer handling
has been introduced to avoid the TYPO3 backend ... - 08:04 Revision c6863067: [BUGFIX] Use SystemEmail layout in felogin password recovery
- The PasswordRecovery template misses a layout which results in an empty
HTML part being rendered. This patch adds the...
2020-05-17
- 11:23 Revision 33187ea8: [DOCS] Correctly close tags in changelogs
- Releases: master
Resolves: #91395
Change-Id: If1c5c896c519aa5cf5ff35072bb101f718f8cdcb
Reviewed-on: https://review.ty...
2020-05-15
- 15:32 Revision 110985c1: [TASK] Namespaces for PSR-14 events corrected
- The namespaces for the PSR-14 events are not working. Removed /Login -
path since this is not existing.
Releases: ma... - 15:15 Revision b1af57ac: [BUGFIX] Set changed state of FormEngine when null placeholder fields are changed
- When a null placeholder checkbox is changed, the linked form field is
now marked as "changed", which triggers the con... - 08:27 Revision cb0d4629: [BUGFIX] Set changed state of FormEngine when null placeholder fields are changed
- When a null placeholder checkbox is changed, the linked form field is
now marked as "changed", which triggers the con... - 07:49 Revision f06fa298: [BUGFIX] Check for existence of `t3js-login-url` id in Login dialog
- HTML element with identifier `t3js-login-url` is used to check whether
referrer handling is activated and suported. I... - 07:49 Revision 67944aa4: [BUGFIX] Check for existence of `t3js-login-url` id in Login dialog
- HTML element with identifier `t3js-login-url` is used to check whether
referrer handling is activated and suported. I...
2020-05-14
- 23:12 Revision ccd6da50: [BUGFIX] Exclude current record when checking slug's uniqueness
- The current record constraint was forgotten in the
implementation of uniqueInTable and is now added.
Resolves: #9137... - 20:34 Revision a908f93e: [BUGFIX] Fix SMTP encryption migration when plaintext was used before
- The SMTP SSL/TLS migration introduced in #91070 does not take the case
into account when no SMTP encryption was used ... - 20:01 Revision 347ab376: [BUGFIX] Use correctly terminated HTML block elements
- Using `<div />` as template to be used in jQuery worked previously,
but is not supported with jQuery 3.5.x anymore. O... - 19:58 Revision 23987851: [BUGFIX] Use correctly terminated HTML block elements
- Using `<div />` as template to be used in jQuery worked previously,
but is not supported with jQuery 3.5.x anymore. O... - 11:12 Revision 8686d858: [BUGFIX] Relax constraints on serializing objects
- With security advisory TYPO3-CORE-SA-2020-004 new
`BlockSerializationTrait` has been introduced blocking serializatio... - 10:44 Revision dab027bd: [BUGFIX] Exclude current record when checking slug's uniqueness
- The current record constraint was forgotten in the
implementation of uniqueInTable and is now added.
Resolves: #9137... - 10:37 Revision 5c48857f: [BUGFIX] Relax constraints on serializing objects
- With security advisory TYPO3-CORE-SA-2020-004 new
`BlockSerializationTrait` has been introduced blocking serializatio... - 09:29 Revision e413054c: [BUGFIX] Prevent PHP type error and stale language cache
- PHP is raising an error if $pageId cannot be resolved to an
integer value as required by method signature.
Additiona... - 06:24 Revision 45d2a426: [BUGFIX] Open CSH with selected context provided by links
- A context can be provided, when opening the CSH (Context Sensitive Help).
E.g. when opening the CSH for a backend mo... - 06:24 Revision 984a3609: [BUGFIX] Fix "see also" links in CSH entries
- The "see also" links, used for cross referencing
different CSH entries are fixed. Cross referencing
links are now bui...
2020-05-13
- 18:50 Revision 738ac0cc: [BUGFIX] Remove wrong MethodCallStaticMatchers
- Some methods have been added for this matcher,
which are actually not deprecated/removed as a
whole. Only the usage o... - 08:26 Revision 3c7867fc: [TASK] Don't use GeneralUtility::getContainer in functional tests
- As GeneralUtility::getContainer is marked internal, we do now avoid
to use this method in core tests in order to demo...
2020-05-12
- 13:09 Revision 554fcf40: [TASK] Set TYPO3 version to 9.5.18-dev
- Change-Id: Iadabfec179a236eac6cad0c89c32fe2a4d42e200
Reviewed-on: https://review.typo3.org/c/Packages/TYPO3.CMS/+/644... - 13:09 Revision 1c92d05b: [TASK] Set TYPO3 version to 10.4.3-dev
- Change-Id: I6e8b59634266786e07a0d80a6271914a26a7d7e4
Reviewed-on: https://review.typo3.org/c/Packages/TYPO3.CMS/+/644... - 12:41 Revision cf17e400: [RELEASE] Release of TYPO3 10.4.2
- Change-Id: I22d5494ecd9cf12efbd6a7acec0b23b000340905
Reviewed-on: https://review.typo3.org/c/Packages/TYPO3.CMS/+/644... - 12:36 Revision 33a59bca: [RELEASE] Release of TYPO3 9.5.17
- Change-Id: I8491411d8175bfb72212f1d7e3cf9722f404cc0e
Reviewed-on: https://review.typo3.org/c/Packages/TYPO3.CMS/+/644... - 11:30 Revision 7339543a: [SECURITY] Escape shortened placeholder text in HTML output
- Prevent XSS by escaping the shortened placeholder text for various
Backend form elements properly.
Resolves: #90817
... - 11:22 Revision 1b28fec3: [SECURITY] Mitigate bypassing CSRF token via XSS
- Cross-site scripting in same-site/same-origin context most probably
allows bypassing tokens that usually protects aga... - 11:22 Revision e4fb92a8: [SECURITY] Avoid insecure deserialization of $BE_USER->uc properties
- General and unscoped collection of user settings in $BE_USER->uc is
vulnerable to insecure deserialization, triggered... - 11:22 Revision ab4fec2a: [SECURITY] Prevent destructors with side-effects from being unserialized
- Deserialization of objects could lead to arbitrary removal of resources
as well as sending out message via mail.
Res... - 11:21 Revision 0040b7b3: [SECURITY] Ensure decoded entities are encoded for HTML again
- HTML entities being used in link tags created with `typolink` have
to be encoded correctly again after entities have ... - 11:21 Revision 14929b98: [SECURITY] Prevent time based information disclosure
- To prevent a time based information disclosure in backend password reset,
this patch adds a random delay between 200 ... - 11:21 Revision deaf931c: [SECURITY] Mitigate bypassing CSRF token via XSS
- Cross-site scripting in same-site/same-origin context most probably
allows bypassing tokens that usually protects aga... - 11:21 Revision 7d4159f7: [SECURITY] Avoid insecure deserialization of $BE_USER->uc properties
- General and unscoped collection of user settings in $BE_USER->uc is
vulnerable to insecure deserialization, triggered... - 11:21 Revision fa3992d1: [SECURITY] Prevent destructors with side-effects from being unserialized
- Deserialization of objects could lead to arbitrary removal of resources
as well as sending out message via mail.
Res... - 11:21 Revision 931a4fc0: [SECURITY] Ensure decoded entities are encoded for HTML again
- HTML entities being used in link tags created with `typolink` have
to be encoded correctly again after entities have ... - 11:21 Revision 109bf625: [SECURITY] Escape shortened placeholder text in HTML output
- Prevent XSS by escaping the shortened placeholder text for various
Backend form elements properly.
Resolves: #90817
... - 11:15 Revision dcac1c70: [TASK] Integrate server response security checks
- In order to evaluate potential server misconfigurations and to reduce
the potential of security implications in gener... - 11:07 Revision c04ce955: [TASK] Integrate server response security checks
- In order to evaluate potential server misconfigurations and to reduce
the potential of security implications in gener... - 09:59 Revision 14849c32: [TASK] Incorporate changes of jQuery version 3.5.0
- Patch files for fixing security issues are provided and applied after
installing the modules via `yarn install`.
htt... - 09:58 Revision f34eb516: [TASK] Incorporate changes of jQuery version 3.5.0
- This commit introduces live-patching of node_modules, which applies
patch files to specific modules (similar to compo... - 09:48 Revision d9616d69: [BUGFIX] Revert PageReadPermission check for TreeController
- In order to allow non-admins to fetch nodes which have no "pid=0"
the change to only fetch pages with access, the cha... - 09:31 Revision 89b080a3: [BUGFIX] Fix internal + external links with URLs fragment
- Internal and external links have been incorrectly processed
by the legacy link notation converter which removed the
f... - 09:17 Revision 49d8b1cc: [BUGFIX] Revert PageReadPermission check for TreeController
- In order to allow non-admins to fetch nodes which have no "pid=0"
the change to only fetch pages with access, the cha... - 09:17 Revision 71440487: [BUGFIX] Fix internal + external links with URLs fragment
- Internal and external links have been incorrectly processed
by the legacy link notation converter which removed the
f... - 09:16 Revision 49096b07: [BUGFIX] Enable Enhancer support for MountPoints
- When using e.g. PageTypeDecorator in conjunction with mountpoints
and other Enhancers, the MP parameter was not added... - 09:10 Revision d5b5b26c: [BUGFIX] Allow more characters for MySQL / MariaDB database name
- With this change it is possible to use a wider set of characters.
Please have a look at the official documentation of... - 08:41 Revision 379288fb: [DOCS] ext:dashboard presets feature
- The system extension ext:dashboard provides a way to register presets of
dashboards.
These presets can be configured ...
2020-05-11
- 22:14 Revision ba457e83: [BUGFIX] Enable Enhancer support for MountPoints
- When using e.g. PageTypeDecorator in conjunction with mountpoints
and other Enhancers, the MP parameter was not added... - 21:50 Revision c71afa63: [BUGFIX] Only call getMovePlaceholder for MOVE_POINTER records
- Since isInWebMount now calls BEgetRootline with workspace overlays,
an additional query for ALL requested pages in ro... - 21:26 Revision 02d3c6a3: [BUGFIX] Only call getMovePlaceholder for MOVE_POINTER records
- Since isInWebMount now calls BEgetRootline with workspace overlays,
an additional query for ALL requested pages in ro... - 20:37 Revision cd8a613c: [BUGFIX] Consistently fetch SiteConfiguration from DI
- SiteConfiguration is available from the DI container (both in failsafe and
symfony DI), therefore no constructor argu... - 19:06 Revision d3297faa: [BUGFIX] Correctly evaluate "unique" eval for slug fields
- TYPO3 v9.5.16, fixed functionality for URL resolving
for records with slug fields defined as "uniqueInSite".
With suc... - 17:18 Revision f1a8ae98: [BUGFIX] Correctly evaluate "unique" eval for slug fields
- TYPO3 v9.5.16, fixed functionality for URL resolving
for records with slug fields defined as "uniqueInSite".
With suc... - 13:57 Revision db898e5a: [BUGFIX] Fix HMENU special=directory when site language is in free mode
- When setting a site language into free mode for translations, then
"$cObj->exec_getQuery()" only returns the pages wi... - 12:28 Revision 67f1f68f: [BUGFIX] Disable new content buttons until module is loaded
- Each link triggering the "New content element" wizard is now initially
disabled and gets enabled once the according m... - 09:14 Revision 2f9d1470: [BUGFIX] Fix HMENU special=directory when site language is in free mode
- When setting a site language into free mode for translations, then
"$cObj->exec_getQuery()" only returns the pages wi... - 09:14 Revision 61aec701: [BUGFIX] Do not deprecate $GLOBALS[TYPO3_REQUEST]
- The global object $GLOBALS[TYPO3_REQUEST] holding the
current PSR-7 request object was introduced in TYPO3 v9.2.
How... - 08:38 Revision 0fb9702c: [BUGFIX] Do not deprecate $GLOBALS[TYPO3_REQUEST]
- The global object $GLOBALS[TYPO3_REQUEST] holding the
current PSR-7 request object was introduced in TYPO3 v9.2.
How... - 07:55 Revision 1688e525: [BUGFIX] Fix typo in frontend usergroups CSH details text
- This commit fixes small typo in CSH text for frontend usergroups where instead of
"of" word "or" was used, changing s... - 07:33 Revision 1d2f1ba8: [BUGFIX] Fix typo in frontend usergrops CSH details text
- This commit fixes small typo in CSH text for frontend usergroups where instead of
"of" word "or" was used, changing s...
2020-05-10
- 08:15 Revision 10f755df: [BUGFIX] Include composer dumpautoload in Test Plan Jobs
- Resolves: #91349
Releases: master, 9.5
Change-Id: I60ffcb35a82d7e890590f836dcfd9e0739c8db03
Reviewed-on: https://revi...
2020-05-09
- 18:26 Revision e7732cb7: [BUGFIX] Include composer dumpautoload in Test Plan Jobs
- Resolves: #91349
Releases: master
Change-Id: I60ffcb35a82d7e890590f836dcfd9e0739c8db03
Reviewed-on: https://review.ty... - 15:08 Revision feb1d091: [TASK] Improve backend module Form description
- This commit improves description text for backend module Form by replacing
reference to "Mail Form" content element w... - 15:01 Revision 5adf2b74: [TASK] Use getElementById where feasible
- It's safe to use getElementById() instead of querySelector() in case an
element is fetched by its ID.
Numbers for ne... - 14:55 Revision 65597ce9: [TASK] Improve backend module Form description
- This commit improves description text for backend module Form by replacing
reference to "Mail Form" content element w... - 11:50 Revision f4f0dc0e: [BUGFIX] Remove obsolete period in scheduler label
- Resolves: #91343
Releases: master, 9.5
Change-Id: I1d5c48c5ba7a8d6ff977b7e0ca5d3f96d7e1963d
Reviewed-on: https://revi... - 10:46 Revision 6b375f6c: [BUGFIX] Remove obsolete period in scheduler label
- Resolves: #91343
Releases: master, 9.5
Change-Id: I1d5c48c5ba7a8d6ff977b7e0ca5d3f96d7e1963d
Reviewed-on: https://revi...
2020-05-08
- 23:23 Revision e995640d: [TASK] Clarify replacement for TSFE->storeSessionData()
- Releases: master
Related: #85878
Resolves: #91248
Change-Id: I8eb19a7e7f2ac4527beb9befafc6b16cf79e99cd
Reviewed-on: h... - 21:42 Revision 02856fcd: [BUGFIX] Add recipient to FluidEmail Test cases to avoid errors
- The to header is mandatory by now, so we need to supply the recipient
in our testcases now.
Resolves: #91346
Release... - 19:47 Revision b7dc8b29: [BUGFIX] Use correct constant for email templateName in felogin
- Releases: master
Resolves: #91337
Relates: #90729
Change-Id: I564f488dd653448046599a9bb1099dd05c4211f7
Reviewed-on: h... - 19:32 Revision 2f366190: [BUGFIX] Fix detection of plugin name by action
- While switching from controller class aliases to fully
qualified controller class names (internally), the structure
o... - 14:16 Revision 03f53106: [BUGFIX] Correctly consider nested tags in frontend HTML parser
- Nested tags starting with the same literals, like `<s><span>...`
or `<a ...><abbr>...` are not correctly nested due t... - 11:16 Revision ee066492: [TASK] Improve file rename duplicate warning message
- Improve the warning message presented to the user when a file is renamed
through the Filelist module and a file with ...
2020-05-06
- 17:23 Revision 4978699f: [BUGFIX] Use correct slug for access restricted translated pages
- Access restricted, translated pages currently always have the slug from the
default language instead of their transla... - 16:56 Revision 56269a97: [BUGFIX] Use correct slug for access restricted translated pages
- Access restricted, translated pages currently always have the slug from the
default language instead of their transla... - 16:53 Revision c342a0de: [BUGFIX] Respect disabled flag in render method of LinkButton
- Resolves: #91244
Releases: master
Change-Id: I107cb96ff416211028f9da524500f1ca15c3297c
Reviewed-on: https://review.ty... - 14:31 Revision f862f640: [BUGFIX] Use proper Fluid exception class
- This patch replaces the deprecated classes with their proper
replacement.
Resolves: #91315
Releases: 9.5
Change-Id: ... - 14:27 Revision 11b58768: [BUGFIX] Show correct language title for inconsistent content
- Show the correct language title in the new fluid page module if an
inconsistent content state has been detected. The ... - 13:17 Revision d77b3a45: [BUGFIX] Change 3rd argument of calls to callUserFunction()
- The third argument of `GeneralUtility::callUserFunction` must be either
an object or null.
Ensure the argument is alw... - 12:10 Revision 9a4bcd77: [BUGFIX] Lift restriction for restricted records in Routing Aspects
- Since TYPO3 v9.5.16 it is not possible anymore to resolve URLs with an
Aspect that contains records with fe_group res... - 11:28 Revision 45d3d115: [TASK] Avoid superfluous reference operator on objects
- Legacy left-overs using references on class instances can be removed.
Resolves: #91319
Releases: master, 9.5
Change-... - 11:28 Revision a7e89583: [TASK] Avoid superfluous reference operator on objects
- Legacy left-overs using references on class instances can be removed.
Resolves: #91319
Releases: master, 9.5
Change-... - 11:27 Revision 99af82fb: [BUGFIX] Lift restriction for restricted records in Routing Aspects
- Since TYPO3 v9.5.16 it is not possible anymore to resolve URLs with an
Aspect that contains records with fe_group res... - 10:59 Revision 25aa35b3: [TASK] Use proper function reference for backend route in test case
- Invoking `call_user_func_array([ExampleClass::class, 'methodName'], [])`
on a non-static method throws a PHP warning.... - 08:11 Revision df5e8084: [BUGFIX] Fix typo in identifier exists validation message in site configuration
- This commit fixes small typo at the end of the identifier exists validation message
used in site configuration contro... - 07:23 Revision 2754fed3: [BUGFIX] Fix typo in identifier exists validation message in site configuration
- This commit fixes small typo at the end of the identifier exists validation message
used in site configuration contro...
2020-05-05
- 16:32 Revision 0df025f8: [BUGFIX] Add 10.4.x changelogs to index as well
- Resolves: #91308
Releases: master
Change-Id: I1dc74ba54e11f35e0d4b99ebcc68e1ee77ea8598
Reviewed-on: https://review.ty... - 10:28 Revision f66a20d3: [TASK] Add rel="noreferrer" to external links of widgets
- Clicking on external links (with target="_blank") in RSS widgets and buttons
of Dashboard widgets can leak the referr... - 09:02 Revision da6bd978: [BUGFIX] Fix URLs to RSS feeds in Dashboard Widgets
- As the www prefix is not used anymore on typo3.org, the
URLs of the RSS feeds are updated in the Dashboard Widgets.
... - 08:30 Revision 6ee5ebe5: [BUGFIX] Make rendering of priority option optional in XML sitemaps
- According to https://www.sitemaps.org/de/protocol.html the option
`priority` is optional. If a SitemapProvider doesn'... - 07:41 Revision 326671fd: [BUGFIX] Reset `window.opener` in backend and load modules if authenticated
- This patch resets the `window.opener` for the entire TYPO3 backend and
loads modules using this only in an authentica...
2020-05-04
- 17:55 Revision b7a05352: [BUGFIX] Reset `window.opener` in backend and load modules if authenticated
- This patch resets the `window.opener` for the entire TYPO3 backend and
loads modules using this only in an authentica... - 14:46 Revision 529a1cdb: [TASK] Respect disabled ElementBrowser also in TableList
- The ElementBrowser which is typically used for type=group,
can be disabled via the `fieldControl`.
This configuratio... - 13:13 Revision cb40a8cc: [BUGFIX] Harden deprecation log handling
- Because TYPO3's DefaultConfiguration is recursively
merged with settings from LocalConfiguration, it was
impossible t... - 12:51 Revision b0080cba: [BUGFIX] Harden deprecation log handling
- Because TYPO3's DefaultConfiguration is recursively
merged with settings from LocalConfiguration, it was
impossible t... - 12:40 Revision 482d66e9: [BUGFIX] Remove wrong-spelled/not existing class from Services.yaml
- As the class TYPO3\CMS\Dashboard\DasboardRegistry is wrong-spelled and
does not exist, it is removed.
Resolves: #912... - 11:18 Revision 674c3884: [BUGFIX] Improve label of cache clearing message
- Improve the cache clearing label added with #88718.
Resolves: #91284
Releases: master
Change-Id: I8c1036af1428453a6f... - 10:43 Revision 34fcc2dc: [BUGFIX] Cache various where clauses of PageRepository
- Since TYPO3 v9, PageRepository works independently
from TSFE and can and should be instantiated on its
own, depending... - 10:10 Revision aebc8b87: [BUGFIX] Cache various where clauses of PageRepository
- Since TYPO3 v9, PageRepository works independently
from TSFE and can and should be instantiated on its
own, depending... - 09:37 Revision 70fd2f94: [TASK] Respect disabled ElementBrowser also in TableList
- The ElementBrowser which is typically used for type=group,
can be disabled via the `fieldControl`.
This configuratio... - 09:08 Revision 8c38ca65: [TASK] Enhance custom event dispatching in modal dialog
- * allows custom events to bubble up in DOM tree
* ensures that custom events are dispatched at those elements
that ...
2020-05-03
- 15:51 Revision 760f209d: [BUGFIX] Use class instead of HTML comment to determine loading state of IRRE element
- IRRE relied on the HTML comment `<!--notloaded-->` to detect whether a
record is already loaded or not. As this might...
Also available in: Atom