twitter 6.x-5.2

Security update
Bug fixes
New features

This has been superseded by v6.x-5.3.

Twitter - Moderately Critical - Access bypass - SA-CONTRIB-2015-146

This includes a wealth of improvements and bug fixes since the last release, totaling almost 100 issues fixed and almost 300 new patches written in the past six months, and is a recommended update for all sites. As always, test the update on a copy of the site to confirm there are no unexpected changes.

Notable changes include:

  • Downloading tweets that contain emoji will no longer break the module.
  • There now exists a notion of a Twitter account being considered "global". When writing tweets via the Twitter Post submodule, a user may select from either global accounts or authenticated ones that they themselves have added to the site. Users may also no longer publish from an account that is not publish which they do not own. There are new options permissions involved in this, it is highly recommended to verify the site's configuration after updating to ensure everything is still working as intended.
  • Images embedded in tweets will now be displayed.
  • A custom pane was added for Panels integration, for posting to Twitter when building a custom node_edit display.
  • A new text filter was added that allows embedding tweets by simply pasting the full URL of a single tweet.
  • Improved error handling when API calls fail.
  • Many bug fixes.

twitter 7.x-6.0

Security update
Bug fixes
New features

This has been superseded by v7.x-6.1.

Twitter - Moderately Critical - Access bypass - SA-CONTRIB-2015-146

This includes a wealth of improvements and bug fixes since the last release, totaling almost 100 issues fixed and almost 300 new patches written in the past six months, and is a recommended update for all sites currently using the v7.x-6.x branch. As always, test the update on a copy of the site to confirm there are no unexpected changes.

Note: No update process is included for sites currently using 7.x-5.x releases, that will hopefully be included in the forthcoming 7.x-6.1 release.

Notable changes include:

  • Downloading tweets that contain emoji will no longer break the module.
  • There now exists a notion of a Twitter account being considered "global". When writing tweets via the Twitter Post submodule, a user may select from either global accounts or authenticated ones that they themselves have added to the site. Users may also no longer publish from an account that is not publish which they do not own. There are new options permissions involved in this, it is highly recommended to verify the site's configuration after updating to ensure everything is still working as intended.
  • The tweet.tpl.php template has been renamed to twitter_status.tpl.php; this will require sites to manually update any customizations they had done.
  • Images embedded in tweets will now be displayed.
  • A new text filter was added that allows embedding tweets by simply pasting the full URL of a single tweet.
  • Improved error handling when API calls fail.
  • Many bug fixes.

twitter 7.x-5.9

Security update
Bug fixes
New features

This has been superseded by v7.x-5.10.

Twitter - Moderately Critical - Access bypass - SA-CONTRIB-2015-146

This includes a wealth of improvements and bug fixes since the last release, totaling almost 100 issues fixed and almost 300 new patches written in the past six months, and is a recommended update for all sites. As always, test the update on a copy of the site to confirm there are no unexpected changes.

Notable changes include:

  • Downloading tweets that contain emoji will no longer break the module.
  • There now exists a notion of a Twitter account being considered "global". When writing tweets via the Twitter Post submodule, a user may select from either global accounts or authenticated ones that they themselves have added to the site. Users may also no longer publish from an account that is not publish which they do not own. There are new options permissions involved in this, it is highly recommended to verify the site's configuration after updating to ensure everything is still working as intended.
  • The tweet.tpl.php template has been renamed to twitter_status.tpl.php; this will require sites to manually update any customizations they had done.
  • Images embedded in tweets will now be displayed.
  • A custom pane was added for Panels integration, for posting to Twitter when building a custom node_edit display.
  • A new text filter was added that allows embedding tweets by simply pasting the full URL of a single tweet.
  • Improved error handling when API calls fail.
  • Many bug fixes.

mutual_credit 7.x-3.7

Security update

In Drupal 7.39 there are ajax security improvements which break the user_chooser module on which this depends. This version depends on the latest version of user_chooser, 1.6. (I've marked it a security update because I forgot to mark the user_chooser version as a security update.)

drupal 7.39

Security update
Insecure

Maintenance and security release of the Drupal 7 series.

This release fixes security vulnerabilities. Sites are urged to upgrade immediately after reading the notes below and the security announcement:

No other fixes are included.

drupal 6.37

Security update
Insecure

Maintenance and security release of the Drupal 6 series.

This release fixes security vulnerabilities. Sites are urged to upgrade immediately after reading the notes below and the security announcement:

No other fixes are included.

Pages

Subscribe with RSS Subscribe to RSS - Security update