emfield 6.x-1.27

Bug fixes

Fixes Embedded Media Field - Moderately Critical - Access Bypass - DRUPAL-SA-CONTRIB-2016-004

Changes since 6.x-1.26:

  • by dalin: Ensure that width and height are always numbers.
  • #1868588 by tangent: URL detection regex does not match hyphens / breaks HTML markup

emfield 6.x-2.7

Security update
Bug fixes

Fixes Embedded Media Field - Moderately Critical - Access Bypass - DRUPAL-SA-CONTRIB-2016-004

Changes since 6.x-2.6:

  • by dalin: Ensure that width and height are always numbers.
  • #1868588 by tangent: URL detection regex does not match hyphens / breaks HTML markup

emfield 6.x-2.6

New features
Bug fixes
Insecure

Issue #1050792: Scrollbars in the frame box by dgsiegel, esod: Scrollbars in the frame box.
Issue #289432: Views integration for Title & Description by AndyThornton: Views integration for Title & Description.

emfield 5.x-1.13

New features
Bug fixes

by aaron: Add support for Livestream provider.
by aaron: Fix menu in php 5.3.
Issue #285050: Fatal error: Only variables can be passed by reference by aaron: Add support for PHP 5.3.

emfield 6.x-2.5

New features
Bug fixes
Insecure

by aaron: Pass arguments to hook_emfield_widget_extra_file_included
by aaron: Use module_hook when invoking hook_emfield_widget_extra_file_included
by aaron: Add support for start/end times
Issue #811090: Embedded Inline Media filter regex out of date - URL can't be wrapped in HTML tags by geerlingguy: Fix Embedded Inline Media filter regex so URL can be wrapped in HTML tags

emfield 6.x-2.4

Security update
Insecure
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-109
  • Projects: Embedded Media Field, Media: Video Flotsam, Media: Audio Flotsam (third-party module)
  • Version: 5.x and 6.x
  • Date: 2010-December-08
  • Security risk: Moderately Critical
  • Exploitable from: Remote
  • Vulnerability: Multiple vulnerabilities

Description

1 - Arbitrary File Upload/Code Execution Vulnerability

emfield 6.x-1.26

Security update
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-109
  • Projects: Embedded Media Field, Media: Video Flotsam, Media: Audio Flotsam (third-party module)
  • Version: 5.x and 6.x
  • Date: 2010-December-08
  • Security risk: Moderately Critical
  • Exploitable from: Remote
  • Vulnerability: Multiple vulnerabilities

Description

1 - Arbitrary File Upload/Code Execution Vulnerability

emfield 5.x-1.12

Security update
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-109
  • Projects: Embedded Media Field, Media: Video Flotsam, Media: Audio Flotsam (third-party module)
  • Version: 5.x and 6.x
  • Date: 2010-December-08
  • Security risk: Moderately Critical
  • Exploitable from: Remote
  • Vulnerability: Multiple vulnerabilities

Description

1 - Arbitrary File Upload/Code Execution Vulnerability

emfield 6.x-2.3

Bug fixes
Insecure

Changes since DRUPAL-6--2-2:

  • #948332 by tangent, aaron: Double brackets around table in audit query.

emfield 6.x-2.2

New features
Bug fixes
Insecure

Changes since DRUPAL-6--2-1:

emfield 6.x-2.1

Security update
Insecure
  • Advisory ID: SA-CONTRIB-2010-094
  • Project: Embedded Media Field (third-party module)
  • Version: 5.x, 6.x
  • Date: 2010-September-22
  • Security risk: Moderately Critical
  • Exploitable from: Remote
  • Vulnerability: Access Bypass

Description

emfield 6.x-1.25

Security update
Insecure
  • Advisory ID: SA-CONTRIB-2010-094
  • Project: Embedded Media Field (third-party module)
  • Version: 5.x, 6.x
  • Date: 2010-September-22
  • Security risk: Moderately Critical
  • Exploitable from: Remote
  • Vulnerability: Access Bypass

Description

emfield 5.x-1.11

Security update
Insecure
  • Advisory ID: SA-CONTRIB-2010-094
  • Project: Embedded Media Field (third-party module)
  • Version: 5.x, 6.x
  • Date: 2010-September-22
  • Security risk: Moderately Critical
  • Exploitable from: Remote
  • Vulnerability: Access Bypass

Description

emfield 6.x-2.0

New features
Bug fixes
Insecure

First full release of Embedded Media Field 2.0!

emfield 6.x-1.24

Bug fixes
Insecure

PLEASE UPGRADE TO THIS RELEASE IMMEDIATELY if you have installed versions 6.x-1.21, 6.x-1.22, or 6.x-1.23. There is a critical bug in those releases that will cause new data to not be saved!

Changes since DRUPAL-6--1-20:

emfield 6.x-1.23

New features
Bug fixes
Insecure

DO NOT USE THIS RELEASE! Use instead at least version emfield 6.x-1.24.

emfield 6.x-1.22

Bug fixes
Insecure

DO NOT USE THIS RELEASE! Use instead at least version emfield 6.x-1.24.

emfield 6.x-1.21

Bug fixes
Insecure

DO NOT USE THIS RELEASE! Use instead at least version emfield 6.x-1.24.

emfield 6.x-3.x-dev

New features

reworking architecture to allow media-like browsing in d6

emfield 6.x-1.20

Bug fixes
Insecure

Changes since DRUPAL-6--1-19:

  • #339635 by jerdavis: Add breaks during switch cases.
  • #520426 by aaron: Add splash image support to custom video/flowplayer.

emfield 6.x-2.x-dev

New features
Bug fixes

New development goes here. Version 1 is now closed, except for bug fixes. Bleeding edge media!

emfield 6.x-1.18

Bug fixes
Insecure

This is the release just before the branch to version 2 of the module. From here on out, version 1 will only contain bug fixes.

#638758: Fixes and improvements to emthumb by andrewlevine: Fixes and improvements to emthumb.

emfield 6.x-1.16

Insecure

interim release to clean the release queue, sorry. 17 on its way

emfield 6.x-1.15

Bug fixes
Insecure

by aaron: Valid W3 code for youtube flashparams when using w/ flv player.

emfield 6.x-1.14

Bug fixes
Insecure

Embedded Media Field

#618272: bug in emfield.php and emthumb by hutch: Fixed bug in emfield.php.

Embedded Media Thumbnail

by aaron: Make imagecache requirement conditional.

Embedded Video Field

emfield 6.x-1.13

Insecure

Embedded Media Field

#612780: Error in emfield.php by cangeceiro: Fixed Error in emfield.php.

Embedded Video Field

emfield 6.x-1.12

Bug fixes
Insecure

Embedded Media Field
==============
by aaron: Document module-provided hooks.
by aaron: Change legacy module_invoke to directly call internal funciton.
#604524: Allow modules to tap into the video 'data' field by aaron | DamienMcKenna : Create new hook_emfield_data_alter(&$data).
by aaron: Fix error/WSOD on admin screen if FLV Media Player module installed,

emfield 6.x-1.11

Bug fixes
Insecure

Embedded Media Field

by aaron: Add generic theme for swfobject when that module not included.
#592284: DB field errors on upgrade to 6.x.1.8 by aaron: Fix botched update for provider data import.

Embedded Video Field

by aaron: Clean up youtube to send through emfield's swfobject theme by default.
by aaron: Use all flashvars w/ flvmediaplayer fallback.

emfield 6.x-1.10

New features
Bug fixes
Insecure

by aaron: Fix display of youtube w/ flvmediaplayer.
#592284: DB field errors on upgrade to 6.x.1.8 by aaron: Fix botched update for duration import.

emfield 6.x-1.8

New features
Bug fixes
Insecure

Embedded Media Field:

by aaron: Add 'provider' views handlers.
by aaron: Upgrade existing fields to retrieve new data when necessary.
by aaron: Store version data in new column.

Embedded Thumbnail Media:

by aaron: Set thumbnails to FILE_STATUS_PERMANENT.

Embedded Video Field:

emfield 6.x-1.7

Bug fixes
Insecure

Embedded Media Thumbnail:

by aaron: Set thumbnails to FILE_STATUS_PERMANENT.

emfield 6.x-1.6

New features
Bug fixes
Insecure

Embedded Media Field:
by aaron: Add support for flv media player profiles.

Embedded Inline Media:
by aaron: Add instructions to the README.txt file.

emfield 5.x-1.8

New features
Bug fixes
Insecure

#358241: Field help text links 'Custom URL' to site itself by joachim: Field help text links 'Custom URL' to site itself.
by grndlvl: Initial d5 version of eminline.

emfield 6.x-1.5

New features
Bug fixes
Insecure

Embedded Media Field:

by aaron: Sanitize only before preview.
by aaron: Clean up extra columns invocation.
by aaron: Allow providers to validate URLs.
#264264: field value on preview by aaron: Sanitize item for preview.
by aaron: Add option for thumbnail play button overlay.
by aaron: Implement hook_content_generate for Devel module.

Embedded Image Field:

by aaron: Fix queries in URL path for picasa.
by aaron: Error message for bad picasa urls.
by aaron: Ignore additional queries in picasa regex.
by aaron: Clean up regex for picasa and get it working.
by plong0: Parse URL for server/album/title.
by aaron: Add w/h options to theme functions.
by aaron: Fix conflict w/ local hijacking non image URLS.

Embedded Media Thumbnail:

by aaron: Display saved thumbnail.

Embedded Video Field:

#293153: Can't use Blip.tv Embed Code instead of URL by aaron: Work-around for not being able to paste Blip.tv embed codes.
#552388: Default thumbnail doesn't appear by nick_robillard | srobert72: Fixed Default thumbnail doesn't appear.
by aaron: Add wrapper div w/ classes to video & preview.
by aaron: Change modal thumbnail position: relative.
by aaron: Fix YouTube duration and display of such.
by aaron: Fix new theme function names.
by aaron: Fix new formatters.
by aaron: Fetch YouTube duration.
by aaron: Remove the YouTube API secret key, which no longer exists.
by aaron: Change API info for YouTube.
by aaron: Add formatters for link & duration.

emfield 6.x-1.4

New features
Bug fixes
Insecure

emfield:
* #370882: Fix menu creation (jdwfly/aaron).
* #358241 - Field help text links 'Custom URL' to site itself (joachim).

emvideo:
* #370882: Fix menu creation (jdwfly/aaron).
* #542994: Remove emvideo_requirements (chenba/Rob Loach).
* #397802: blip.tv enclosures seem to not be showing up (jjkiesch).
* #457452: Remove API info from Guba (aaron).
* Don't allow spaces in YouTube URL (aaron).

emfield 6.x-1.3

New features
Bug fixes
Insecure

emfield
----------
* #165731 - Allow provider result of 302 (winston).
* #516642 - Add content_filter_xss() to field help (Pete B).
* Add player-viral.swf to JW FLV Player autosearch (aaron).
* Add $options array to emfield_emfield_field_formatter (aaron).
* Add basic support and admin options for JW Image Rotator (aaron).
* Fix confusing basepath for JW Flash Player variable (aaron).
* Add basic support and admin options for JW Flash Player (aaron).

emvideo
-----------
* Fix emvideo_requirements (mikey_p/Dave Reid).
* Add a 'return_url' option to thumbnails (aaron).
* Add ability to play YouTube videos with JW FLV Player (aaron).
* Rebuild theme in update (aaron).
* Add $options to YouTube theme (aaron).
* Absolute URL's for custom URL's (aaron).
* #207224 Fix amphersands in HTML (aaron/seanr).

emaudio
-----------
* Fix custom_url url to use absolute, fixing playlist problems (aaron).

emimage
------------
* #506440 Add Custom URL For Image Providers (d.roldan.drupal/Rob Loach).

eminline
-----------
* Fix format settings for new FAPI (aaron).
* Port to d6 (aaron).
* Initial d5 version of eminline (grndlv).

emthumb
------------
* Save thumbs on update properly (aaron).
* Fix double slash when emthumb path is empty (aaron).
* Honor widget settings for storing thumbnails (aaron).

emfield 5.x-1.7

Bug fixes
Insecure

emfield
=======
* #197807 - Max length of embed to 4096 (aaron).
* #474790 - Insecure handling of administrator-entered text (aaron).

emthumb
=======
* #474790 - Insecure handling of administrator-entered text (aaron).

emfield 6.x-1.2

Bug fixes
Insecure

emfield
=======
* #197807 - Max length of embed to 4096 (aaron).
* #474790 - Insecure handling of administrator-entered text (aaron).
* Allow silent node batch operations; notice to watchdog (aaron).
* #452724 - winston fixed problem with caching of xml (alexua).

emimage
=======
* #383274 Fix image scaling (aaron).
* #383274 Fix division by error (aaron).

emfield 5.x-1.6

Bug fixes
Insecure

sorry about all the releases tonight... should'da done betas... :P

this fixes blip.tv old data, and autoplay on the new player...

emfield 5.x-1.5

Bug fixes
Insecure

youtube didn't work w/ new version of swfobject. oops

emfield 5.x-1.4

Insecure

General bug fixes in the d5 branch. See changelog.txt for more info.

emfield 6.x-1.0

New features
Bug fixes
Insecure

Users can now store thumbnails on their own sites!!!
#373398 - ckng fixed odeo & podomatic
* added upgrade path for emimage from image_ncck
#416790 - jcmarco fixed bug with emimage that prevented original aspect ratio
* added support for embed code for vimeo
* added option to turn off title and rating on youtube videos
#373398 by ckng: Fix of Odeo provider file - it was not showing up on node-pages.
#416606 by mrb: Allow for fewer than 5 image sizes in flickr provider file.
* Link to proper video value in _emfield_emfield_widget
* Change filename creation for automatic thumbs
* Add support for the Transliteration module (emvideo)
* Strip out the query if provided in a thumbnail filepath
* Added documentation for new arguments of emfield_request_xml()
* Add json option to request xml for brightcove support
* Documentation; default value of '' for error field
* Pass error field when validating data element
* Example provider file for emvideo
* Some video codes have a '/' character, so we have to accomodate in the URL (emvideo).
* Fix conflict w/ inline preview & thickbox/lightbox2 (emvideo)
* Fix inline preview size (emvideo)
* Add new play button, courtesy of BrightLoudNoise
* Documentation of css (emvideo)
* #269149 - Fix thumbnail path
* Fix image path for thumbnail storage

Pages

Subscribe with RSS Subscribe to Releases for Embedded Media Field