monster_menus 9.5.1

Bug fixes
  • Tree Browser:
    • Various appearance improvements and bug fixes
    • Fixes to bookmark editing
    • Add a "[Top]" entry in the tree browser search box's "Starting at" select list
  • Fixes for modal dialog positioning and resizing, particularly when the window's size changes
  • Subpage List:
    • Only show Output Filters to which the current user to has "use" access, unless editing an existing node with another value
    • Modernize the default for Outer Prefix
  • Recycle bin emptying:

    monster_menus 9.5.0

    Bug fixes
    New features

    This release include various bug fixes and some notable performance improvements. The most noticeable changes have to do with the custom form elements used to choose pages, groups and users, which have been completely revamped.

    monster_menus 9.5.0-beta1

    Bug fixes
    New features

    This branch completely revamps the custom widgets used for choosing users, groups, and pages. It also adds support for using SQLite as the backend database.

    monster_menus 9.4.4

    Bug fixes
    Unsupported
    • Full D11 support
    • Remove a redundant status message when saving a virtual group
    • Improve recursive redirect detection
    • Improve the speed of the page settings, copy/move confirmation, and menu reorder pages when dealing with large parts of the tree
    • Fix the display of info regarding the selected region in the node type edit form
    • Fix autocomplete of taxonomy terms in the Search tool
    • Improve the performance of some functions that traverse large sections of the tree

    monster_menus 9.4.3

    Bug fixes
    New features
    Unsupported
    • Add a new Search action, "modify page assignments"
    • Various bug fixes and speed improvements

    monster_menus 9.3.4

    Security update
    Unsupported

    Fixes SA-CONTRIB-2024-052

    Change the method used to store additional arguments in the _oargs query string element.

    monster_menus 9.4.2

    Security update
    Unsupported

    Fixes SA-CONTRIB-2024-052

    Change the method used to store additional arguments in the _oargs query string element.

    monster_menus 9.3.3

    Bug fixes
    Insecure
    Insecure
    Unsupported

    Various small bug fixes:

    • Preserve newly-set node permissions during Preview
    • Search: Handle missing session data more gracefully
    • When saving a node, fix the update of the list of permitted users when there are no groups
    • Fix an edge case where searching based on page permissions in a negative fashion could miss some results
    • Fix a WSOD for a couple of invalid router paths
    • Make the requirements for various menu routes more explicit

    monster_menus 9.3.2

    Security update
    Insecure
    Insecure
    Unsupported

    Fix a bug which could theoretically result in incorrect group membership for the anonymous user being returned in certain rare circumstances

    Monster Menus - Moderately critical - Access bypass, Information Disclosure - SA-CONTRIB-2024-045

    monster_menus 7.x-1.34

    Security update
    Unsupported

    Fix a bug which could theoretically result in incorrect group membership for the anonymous user being returned in certain rare circumstances

    Monster Menus - Moderately critical - Access bypass, Information Disclosure - SA-CONTRIB-2024-045

    monster_menus 9.4.0

    Bug fixes
    Insecure
    Unsupported
    • Fix an edge case where some routes could result in white screen errors
    • Make various changes for compatibility with D11
    • PHP 8.3 compatibility
    • Allow all users access to the Sticky checkbox in node forms, for consistency with MM in D7
    • Drupal 10.3 breaks backward compatibility for the "is recycled" Views filter, so this branch is now marked as compatible only with 10.3.x to 11

    monster_menus 9.3.1

    Bug fixes
    Insecure
    Unsupported
    • Allow all users access to the Sticky checkbox in node forms, for consistency with MM in D7
    • Drupal 10.3 breaks backward compatibility for the "is recycled" Views filter, so this branch is now marked as compatible only with 9.4.x to 10.2.x

    monster_menus 9.4.0-alpha1

    Insecure
    Unsupported

    This alpha version brings PHP 8.3 and D11 compatibility, along with tons of minor code changes suggested by Drupal Rector.

    monster_menus 9.3.0

    Bug fixes
    New features
    Insecure
    Unsupported

    This release contains many fixes and improvements to MM's Search feature (MMTID/settings/search). When a search has results, various Actions can now be chosen:

    monster_menus 9.2.0

    Bug fixes
    New features
    Insecure
    Unsupported

    New in this release:

    • Add a Filter field when using the tree browser to choose images
    • Add a Search dialog for the tree browser's left column
    • Add drush commands to make the entire site readonly (mm:readonly) and writable once more (mm:readwrite)

    Also, various bug fixes.

    monster_menus 9.1.0

    Bug fixes
    Insecure
    Unsupported

    This release contains many bug fixes, performance improvements, and compatibility with Drupal 10.2 and PHP up to version 8.2.

    monster_menus 9.1.0-rc3

    Bug fixes
    Insecure
    Unsupported

    This release includes many bug fixes and performance improvements, as well as full Drupal 10.1 and PHP 8.2 compatibility.

    monster_menus 9.1.0-rc2

    Bug fixes
    New features
    Insecure
    Unsupported

    Adds a CKEditor 5 media insertion plugin to the mm_media module, as well as other media-related fixes

    monster_menus 9.1.0-rc1

    Insecure
    Unsupported

    This is the first release candidate of Monster Menus, compatible with Drupal 10.

    At a minimum, Drupal 9.4 is required to run this version.

    monster_menus 9.0.1

    Bug fixes
    Insecure
    Unsupported
    • Fix node revision view/revert/delete
    • Fix the list of available taxonomies in Search
    • Fix the appearance of tree browsers within modal dialogs
    • Fix lists of links to pages in the output of Verify Sort Index, when performed in a web browser
    • Fix the "Fix URLs in content" function
    • Fix a possible SQL error
    • Fix lots of bugs having to do with importing/exporting nodes
    • Fix various cases of form titles having double colons

    monster_menus 7.x-1.33

    Bug fixes
    Insecure
    Unsupported
    • Fix some PHP warnings in Search
    • Fix a problem when exporting permissions applied to nodes
    • Since recycle bins are usually emptied during a cron run, impose a ten minute time limit on the deletion of nodes. Any nodes remaining after the time limit will be processed during the next cron run. Once they have all been deleted the containing pages are deleted.
    • Fix a bug which could prevent a node from being dragged when reordering nodes on a page
    • Fix the display of Subpage Lists with PHP 8
    • Fix various PHP 8 warnings

    monster_menus 7.x-1.32

    Bug fixes
    New features
    Insecure
    Unsupported
    Enhancements:
    When saving a page's settings, and the page is going from hidden to unhidden, and its siblings have a custom order set, move the page to the bottom of the list
    Bug Fixes:
    Fix a cosmetic error which, under very rare circumstances, could cause menu links to appear not world-readable when they are
    Handle missing ad hoc users more gracefully when importing tree data
    mm_workflow_access:

    monster_menus 7.x-1.31

    Bug fixes
    Insecure
    Unsupported

    Changes in Monster Menus

    • Improve the UX of the Published and Publish On Date settings by hiding the dates when Published is unchecked
    • Allow menu renderers to depict the entries for pages having sub-pages differently
    • Fix searching for pages using the "Everyone" permission
    • Future-proof cookies by setting them with the SameSite attribute
    • Verify sort index: When both the names and aliases of siblings are the same, group this into one message
    • Add create/modify times to CSV dump output

    monster_menus 7.x-1.30

    Bug fixes
    Insecure
    Unsupported

    Monster Menus core:

    • Make MM work with the comment_verification module
    • Fix the uploading of a CSV of group members, in the case where there are duplicate users in the file
    • Prevent the page permalink from being incorrect when there is an mm_block node on the page
    • Improve the prompt when deleting a node, in the case where the current MM page is not one of the pages where the node is stored
    • Prevent nodes with the same modification time from appearing in a non-deterministic order on a page
    • Remove some site-specific code

    monster_menus 7.x-1.29

    Bug fixes
    New features
    Insecure
    Unsupported

    Feature Changes

    • Add tests to the structure checker to warn when a given level of the tree has multiple entries with the same name and/or alias
    • Move many bits of Javascript code out of mm_static.inc and into separate files, to improve compatibility with advagg

    Bug Fixes

    • Make MM compatible with PHP 7.3. Note that this breaks backward-compatibility with PHP < 5.3, but that's OK because core now requires >= 5.3.
    • Fix a cache clear
    • Fix a use of the PHP 5.4+ array syntax
    • Fix the attribution setting summary

    monster_menus 7.x-1.28

    Bug fixes
    New features
    Insecure
    Unsupported

    Changes in Monster Menus:

    monster_menus 7.x-1.27

    Bug fixes
    Insecure
    Unsupported
    • Speed up the generation of very long menus
    • Verify sort index: Fix the case where the root tree entry is marked dirty; improve the message that appears when the tree is being checked (but not fixed) and an entry is dirty
    • Fix a case where admin/mm/sort/fix could fail to fix anything if a fix was needed for a top-level page
    • Clean up some unused rows in the mm_tree_access table
    • Fix the index on the mm_tree_bookmarks table, and supporting code, to prevent unnecessary rows in the table

    monster_menus 7.x-1.26

    Bug fixes
    Insecure
    Unsupported
    • Issue #2803113 by sgn4779: "Uncaught TypeError: Drupal.mmDialogAdHoc" thrown on webform/configure page
    • Issue #2780843 by i.mcbride, Gribnif: Ensure nodes returned by Gallery select are not WYSIWYG inlines
    • Issue #2779237: Missing mm_browser_gallery_add variable in mm_theme.inc
    • Issue #2778665 by sgn4779: "Uncaught TypeError: Drupal.mmDialogAdHoc" thrown on Copy/Move page
    • Fix a Javascript error when adding users to a group
    • Fix the alias of the "Lost and Found" page created by admin/mm/sort and admin/mm/orphan-nodes

    monster_menus 7.x-1.25

    Bug fixes
    New features
    Insecure
    Unsupported
    • If your site has the feature enabled to provide every user with his or her own homepage, these homepages are no longer created by default when a new account is added. Instead, they are created when requested by the user. Drush commands have been added to administer user homepages.
    • A new "Check for orphan nodes" command has been added at admin/mm. This will look for any nodes that are not associated with any MM page and assign them to one for manual review. There are new drush commands, also: mm-check-orphan-nodes and mm-fix-orphan-nodes.
    • The thickbox module is no longer needed, unless your site uses the Gallery content type, as provided by the mm_media module. Among the benefits, this improves usability for users of devices with small screens.
    • Improve the efficiency of permanently deleting nodes and subpages when a page has many children
    • Improve the efficiency of the fuzzy "page not found" code, so that certain edge cases don't seem to go on forever
    • The speed of permanently deleting pages has been greatly improved. Unfortunately, it's still slower than it needs to be due to silliness in core.
    • Paginate the MM page revisions table and default to a most-recent-first sort order

    monster_menus 7.x-1.24

    Security update
    Insecure
    Unsupported

    Fix for security bug DRUPAL-SA-CONTRIB-2015-163, which allowed nodes placed into a recycle bin to remain accessible by the same users who could access them when outside of the bin.

    monster_menus 7.x-1.23

    Bug fixes
    New features
    Insecure
    Unsupported

    Changes in Monster Menus

    • Allow hook_mm_showpage_routing() page callbacks to insert content into multiple regions on the page at once. See mm_api.inc for details.
    • Fix various PHP 5.4/5.5 warnings
    • Fix the MIME type of search results export as CSV
    • Issue #2554799 by Gribnif, i.mcbride, visabhishek: Select elements on the MM Archive pages should have labels for accessibility
    • Fix some more missing cache clears, which mostly affected the accuracy of the permissions regression tests
    • Prevent double-escaping of page titles/breadcrumbs

    monster_menus 7.x-1.22

    Bug fixes
    Insecure
    Unsupported

    Bug Fixes in Monster Menus

    • Fix the order of nodes in the Reorder table when using the default sort order
    • Fix a longstanding bug that could cause certain node settings, such as permissions, to be lost when processing a form that contains submit buttons that are processed by AJAX. An example is as an Upload button that uploads a file but does not submit the outer node form.
    • Fix a case where some internal caches were not always cleared when expected

    mm_schedule

    • Fix a preg_replace() modifier deprecated in PHP 5.4

    monster_menus 7.x-1.21

    Bug fixes
    New features
    Insecure
    Unsupported

    IMPORTANT:

    If you have a previous release, you must run update.php or "drush updatedb" immediately. If you use the mm_media module you may have to update twice, since a warning is generated the first time under certain circumstances.

    monster_menus 7.x-1.20

    Bug fixes
    New features
    Insecure
    Unsupported

    Monster Menus

    • Begin to add drush commands
    • Search:
      • Improve the way taxonomy searches work, to correctly search all instances of a taxonomy field
      • Add recycle bin status to node and page searches
      • Fix a case where selecting a user would cause the outer form to be automatically submitted
      • Fix searching for theme and allowed themes - Have the "Search again" link restart the page/group search at the same place as before
      • When selecting a group to start searching at, don't show an empty tree browser

    monster_menus 7.x-1.19

    Bug fixes
    New features
    Insecure
    Unsupported

    Monster Menus:

    Features:

    • Add options to admin/mm to export/import entire sections of the tree. Nodes attached to pages can also be acted upon, if the node_export module is installed.
    • Add a new mode to mm_create_path() to only add new items, and not update existing ones; add the ability to return a list of stats/error messages; the same stats are now also present in mm_content_insert_or_udpate()
    • Add a "test" parameter to mm_create_path(), to permit dry runs
    • Feature #2231165: Add some support for pathauto

    monster_menus 7.x-1.18

    Bug fixes
    New features
    Insecure
    Unsupported

    Monster Menus:

    • Add a link to display information about each group in a set of permissions. This can be seen in page settings, where groups listed in permissions now have a "Group Information" link.
    • Add an option to admin/mm/settings which, if a page's alias affects hook_mm_showpage_routing, will either warn the user or prevent him from moving the page or changing the alias
    • Fix a longstanding bug that could cause sort index errors when moving contents into recycle bins. Many many thanks to Hilary C. for coming up with a reproducible test case.

    monster_menus 6.x-6.64

    Bug fixes
    Unsupported
    • Fix a longstanding bug that could cause sort index errors when moving contents into recycle bins. Many many thanks to Hilary C. for coming up with a reproducible test case.
    • Allow the user to edit a node that is assigned to more than one page, via the URL of the page which is numerically lowest, for which he does not have page-level read access

    monster_menus 7.x-1.17

    Bug fixes
    New features
    Insecure
    Unsupported

    Monster Menus:

    • Add a new cache class, MMAccessCacheMemcache, which can be used to improve performance on systems using the memcache module. To enable, add this line to your settings.php file, alongside other memcache configurations: $conf['cache_class_mm_access_cache'] = 'MMAccessCacheMemcache';
    • Automatically flag the "All logged-in users" virtual group to be updated during the next cron run whenever a user is added or removed. Courtesy of Hilary C.

    monster_menus 6.x-6.63

    Bug fixes
    Unsupported
    • Don't empty the group membership lists of sub-groups when the "Copy these permissions to all sub-groups of this group" option is checked
    • Correctly delete the group from mm_node_write when using "Reassign user content" and the user being reassigned is the only member of an "individual users" permisions group for a node

    monster_menus 7.x-1.16

    Bug fixes
    New features
    Insecure
    Unsupported

    Monster Menus

    Enhancements

    • Add a new node type, mm_block, which allows the contents of any block to be displayed as a node. This provides an easy way to put a node on a single page without it also appearing on every other page that uses the same theme.
    • Instead of reusing the no_breadcrumb flag to send the meta tag asking crawlers to not index the page, create a new flag called no_index. Any pages relying upon no_breadcrumb for this will have to have the new flag checked instead. Hint: Use MM's Search feature to identify these pages.

    monster_menus 6.x-6.62

    Bug fixes
    Unsupported
    • Improve the translatability of some watchdog messages
    • Prevent a (remotely) possible missing function error when creating user homepages
    • See if a user's home page needs to be set up every time they log in
    • Fix a longstanding typo in the blocks admin page
    • Fix a PHP warning when parsing a URL containing "mm/" followed by garbage
    • Fix a bug in virtual group regeneration which could cause additional group members to be added when the count of members goes down drastically, but to a number greater than zero, thereby marking it "insane"

    monster_menus 7.x-1.15

    Security update
    Insecure
    Unsupported

    Fix an access bypass which could allow even anonymous users to view node comments they should not be permitted to see.

    SA-CONTRIB-2013-086 - Monster Menus - Access bypass

    monster_menus 7.x-1.14

    New features
    Bug fixes
    Insecure
    Unsupported

    MM:

    • Group membership can be downloaded to a CSV file and then updated using a CSV file upload
    • Add text to the page settings, describing which parent page's theme will be inherited if no theme is chosen
    • In the page copy/move form, standardize the name and alias fields with respect to the regular page settings form; fix the default value of the alias, so that it matches the original page being copied or moved
    • Change the location of the "MM blocks" menu item (admin/structure/block/mm), so that it appears in the actions menu, rather than intermingled with the theme tabs. Requires a menu tree rebuild to take effect.
    • If the no_breadcrumb flag is set, include a noindex meta tag, asking nice crawlers not to index the page; fix a PHP warning
    • Improve the translatability of some watchdog messages
    • See if a user's home page needs to be set up every time they log in
    • Prevent a (remotely) possible missing function error when creating user homepages
    • Fix a longstanding typo in the blocks admin page
    • Fix a PHP warning when parsing a URL containing "mm/" followed by garbage
    • Fix a bug which would cause the Edit link next to the destination alias of a copy/move operation to be unclickable

    monster_menus 6.x-6.61

    Security update
    Unsupported

    SA-CONTRIB-2013-066 - Monster Menus submodule mm_webform - Access Bypass
    https://drupal.org/node/2059823

    Pages

    Subscribe with RSS Subscribe to Releases for Monster Menus