Releases: bolt/bolt
Maintenance release 3.7.5
Update Version.php
Maintenance release 3.7.4.pl-1
Merge pull request #7956 from bartjuh4/multiple-select-fix Export multi select values correctly
Maintenance release 3.7.4
To upgrade your existing Bolt 3.x installation, run
composer update
Released: 2021-06-08. Notable changes:
- Notify users of 4.0 stable release. #7890
- Improve Yaml export for compatibility with Bolt 4/5 Conimex import. #7910
- Killing PHP7.4.3 exceptions post-migration from older Bolt/PHP versions. #7906
- Fix: Fetching content by Taxonomy does not work if ContentType Name is different than ContentType Slug. #7894
- Allow rel-attribute by default. #7885
- Allow {{ fields(record = record) }}, to pass in a record not in global scope. #7912
- Add Composer 2 compatibility. #7913
- Fix: querying by ContentType slug (fixes regression introduced in #7894) #7916
Maintenance release 3.7.3
To upgrade your existing Bolt 3.x installation, run
composer update
Released: 2021-06-07. Notable changes:
- Notify users of 4.0 stable release. #7890
- Improve Yaml export for compatibility with Bolt 4/5 Conimex import. #7910
- Killing PHP7.4.3 exceptions post-migration from older Bolt/PHP versions. #7906
- FIXED: Fetching content by Taxonomy does not work if ContentType Name is different than ContentType Slug. #7894
- Allow
rel
-attribute by default. #7885 - Allow
{{ fields(record = record) }}
, to pass in a record not in global scope. #7912 - Add Composer 2 compatibility. #7913
Maintenance release 3.7.2
To do a 15-second install, use the following:
curl -O https://bolt.cm/distribution/archive/3.7/bolt-3.7.2.tar.gz
tar -xzf bolt-3.7.2.tar.gz --strip-components=1
php app/nut init
Bolt 3.7.2
Released: 2020-10-20. Notable changes:
- Security: Restrict
filter
options inRequest
in Twig context - Security: Provide a stronger secret for
UrlSigner
- Security: Allow only directories to be renamed with
renameFolder
#7867 - Fixes slashes in directory names #7871
- fixed typo 'an' to 'and' in README #7875
- Check if we have a current user, prevent "Trying to access array offset" extension #7869
- Fix ContextErrorException in PHP 7.4 #7868
- Update composer.json: Add
"public-dir": "public"
#7866
Special thanks go out to the following for responsibly disclosing a security issue to us:
- Charles Fol - https://www.ambionics.io/
- ERNW Research GmbH - https://ernw.de/
Maintenance release 3.7.1
To do a 15-second install, use the following:
curl -O https://bolt.cm/distribution/archive/3.7/bolt-3.7.1.tar.gz
tar -xzf bolt-3.7.1.tar.gz --strip-components=1
php app/nut init
For detailed installation instructions and other ways to install, see the documentation: https://docs.bolt.cm/3.6/installation/installation
Released: 2020-05-07. Notable changes:
- Security: Check CSRF on Preview page, and prevent renaming files to blacklisted filetypes #7853
- Change: Add hreflang to allowed_attributes #7855
- Chore: Updating dependencies #7842
- Fixed: Fix tag cloud, update NPM deps #7856
- Fixed: Select field with multiple contenttypes and display values results in a
ContextErrorException
#7849 - Fixed: Trying to access array offset on value of type
null
with PHP 7.4 #7843
Special thanks go out Sivanesh Ashok for responsibly disclosing the two fixed security issues to us.
Minor release 3.7.0
To do a 15-second install, use the following:
curl -O https://bolt.cm/distribution/archive/3.7/bolt-v3.7.0.tar.gz
tar -xzf bolt-v3.7.0.tar.gz --strip-components=1
php app/nut init
For detailed installation instructions and other ways to install, see the documentation: https://docs.bolt.cm/3.6/installation/installation
Released: 2019-11-12. Notable changes:
- Change: Dropped support for PHP 5.5, 5.6 and 7.0. #7826
This means the minimum requirement for Bolt 3.7 is now PHP 7.1. Because of this,
the default distributions will now include more recent versions of libraries,
providing better support for more recent versions of PHP 7.1 and higher
out-of-the-box. This is most noticeable with Doctrine, our database library.
If you're stuck on an older PHP version, you can keep using Bolt 3.6 for the
foreseeable future.
Maintenance release 3.6.11
To do a 15-second install, use the following:
curl -O https://bolt.cm/distribution/archive/3.6/bolt-v3.6.11.tar.gz
tar -xzf bolt-v3.6.11.tar.gz --strip-components=1
php app/nut init
For detailed installation instructions and other ways to install, see the documentation: https://docs.bolt.cm/3.6/installation/installation
Released: 2019-11-10. Notable changes:
- Fixed: Fix tags in non-english languages and firefox caching selected options #7822
- Fixed: Fix typo in
AccessControlListener.php
#7809 - Security: Fix CRSF issues in file operations #7823
- Updated: Add
download
toallowed_attributes
in HTML cleaner #7808 - Updated: Added comment about required IP in
trustProxies
#7807 - Updated: Export improvements #7812
- Updates: Update tests for Doctrine 2.10 compatibility #7824
Special thanks go out f4h4dbt for responsibly disclosing the CSRF issue to us.
Maintenance release 3.6.10
To do a 15-second install, use the following:
curl -O https://bolt.cm/distribution/archive/3.6/bolt-v3.6.9.tar.gz
tar -xzf bolt-v3.6.9.tar.gz --strip-components=1
php app/nut init
For detailed installation instructions and other ways to install, see the documentation: https://docs.bolt.cm/3.6/installation/installation
Released: 2019-08-15. Notable changes:
- Security: Prevent XSS in system log (for authenticated users) #7802
- Security: Prevent XSS in image alt/title (for authenticated users) #7801
- Security: Prevent XSS in "Create file" in file manager (for authenticated users) #7800
- Fixes: Prevent update of
guzzlehttp/psr7
to 1.6, fixes tests #7798 - Fixed: Fix taxonomy name collision #7799
- Fixed: Rebuilding assets, fixing tags cloud #7794
Special thanks go out to @marcingajda for his contributions, and to @KotatuBot
for responsibly disclosing the XSS issues to us.
Maintenance release 3.6.9
To do a 15-second install, use the following:
curl -O https://bolt.cm/distribution/archive/3.6/bolt-v3.6.9.tar.gz
tar -xzf bolt-v3.6.9.tar.gz --strip-components=1
php app/nut init
For detailed installation instructions and other ways to install, see the documentation: https://docs.bolt.cm/3.6/installation/installation
Released: 2019-06-24. Notable changes: