hotblocks 7.x-2.x-dev

New 2.x branch. Heavily refactored and not at all backwards compatible.

This is in development and not recommended for production sites.

hotblocks 6.x-1.8

Security update

Sanitizes 'block names' from the hotblocks settings screen to prevent XSS vulnerabilities.

Prevents infinite looping in situations where the same hotblock references itself as content, or another hotblock references one that in turn references itself.

SA-CONTRIB-2012-126 - Hotblocks - Cross Site Scripting (XSS) and Denial of Service (DoS)

hotblocks 6.x-1.6

Security update
New features
Insecure
  • Added feature in settings page: "respect node access" option which requires the hotblocks admin to have view access of any node that they want to add or remove from the hotblock. Previously, being able to administer a hotblock did not restrict the nodes available to use with it.
  • Non-admin users that did not have view access to a node could still be capable of viewing it within the context of a hotblock, but now they will either need node access to do so, or the "respect node access" option must be turned off.

hotblocks 6.x-1.5

New features
Insecure

This version is the successor to Promos 1.4 (of which Hot Blocks is born from).

New features from the previous incarnation:

Allow the user to specify the terminology to be used for hotblock items

Allow Drupal blocks to be added to hotblocks

Option to show titles only when reordering

Fixed delimiter based title hiding - would not hide title if only part of the title was wrapped with the delimiters

Outline the items you are hovering over when administering items

Several other misc bug fixes ..

Subscribe with RSS Subscribe to Releases for HotBlocks