Joomla News

Joomla! Announcements

Joomla! Official News

Joomla! - the dynamic portal engine and content management system
  • Joomla 3.8.13 Release

    Joomla 3.8.13 is now available. This is a security release for the 3.x series of Joomla which addresses 5 security vulnerabilities.

  • Red alert, shields up - The work of the Joomla Security Team

    A CMS-powered website has all the ingredients for an IT security nightmare: it is publicly accessible, it’s running on powerful machines with great connectivity and the underlying system is used countless times around the globe, making it an attractive target for attackers.
    The Joomla Security Strike Team (JSST) is working hard to make sure that this nightmare doesn’t become reality for Joomla users!

  • Joomla 3.8.12 Release

    Joomla 3.8.12 is now available. This is a security release for the 3.x series of Joomla which addresses 3 security vulnerabilities and contains over 20 bug fixes and improvements.


Joomla! Wiki

Joomla! Documentation - Recent changes [en]

Track the most recent changes to the wiki in this feed.
  • Help38:Extensions Plugin Manager Edit/de

    Created page with "*'''Modus.''' Definiert, ob und wann die Statistiken gesendet werden."

    ← Older revision Revision as of 15:41, 17 October 2018
    (2 intermediate revisions by the same user not shown)
    Line 491: Line 491:
     
    ===System - Joomla!-Statistikerhebung===
     
    ===System - Joomla!-Statistikerhebung===
     
    [[Image:Help30-Extensions-Plugin-Manager-Edit-system-JoomlaStatistics-options-screen-de.png]]
     
    [[Image:Help30-Extensions-Plugin-Manager-Edit-system-JoomlaStatistics-options-screen-de.png]]
    * '''UniqueID'''. An identifier that allows theJoomla! project to count unique installs of the plugin. This is sent with the statistics back to the server.
    +
    *'''EindeutigeID.''' Ein eindeutiger Identifikator, der es demJoomla!-Projekt ermöglicht, einzelne Installationen dieses Plugins zu zählen. Dieser Identifikator wird zusätzlich zu den Statistikdaten an den Server gesendet.
    * '''Interval(hours)'''. Statistics will be sent everyX hours. The default is12.
    +
    *'''Intervall(Stunden).''' Die Statistikdaten werden alleX Stunden gesendet. Standard sind alle12 Stunden.
    * '''Mode'''. Select the way that you want the statistics to be sent.
    +
    *'''Modus.''' Definiert, ob und wann die Statistiken gesendet werden.
      
     
    ===System - Joomla! Update Notification===
     
    ===System - Joomla! Update Notification===
  • File:Help30-Extensions-Plugin-Manager-Edit-system-JoomlaStatistics-options-screen-de.png
  • Help38:Extensions Plugin Manager Edit/de

    Created page with "de"

    ← Older revision Revision as of 15:39, 17 October 2018
    (16 intermediate revisions by the same user not shown)
    Line 465: Line 465:
      
     
    [[Image:Help30-Extensions-Plugin-Manager-Edit-debug-options-screen-de.png]]
     
    [[Image:Help30-Extensions-Plugin-Manager-Edit-debug-options-screen-de.png]]
    *'''Allowed Groups.''' User groups that will see the debug information when enabled.
    +
    *'''Erlaubte Gruppen.''' Debug-Informationen werden nur den  Benutzergruppen gezeigt.
    *'''Show Profiling''' Whether or not to display the profiling waypoints information.
    +
    *'''Laufzeitverhalten anzeigen.''' Verlauf des Profils zum Laufzeitverhalten anzeigen.
    *'''Show Queries.''' Whether or not to include the SQL query log in the debug information.
    +
    *'''Abfragen anzeigen.''' Zeigt eine Liste der Abfragen, die während der Seitenanzeige ausgeführt wurden.
    *'''Show Memory Usage.''' Whether or not to include memory usage data in the debug information.
    +
    *'''Speichernutzung anzeigen.''' Es wird die gesamte Speichernutzung angezeigt.
      
    Language Debug Options:
    +
    Sprache-Optionen
      
     
    [[Image:Help30-Extensions-Plugin-Manager-Edit-debug-language-options-screen-de.png]]
     
    [[Image:Help30-Extensions-Plugin-Manager-Edit-debug-language-options-screen-de.png]]
    *'''Show errors when parsing language files.''' Whether or not to display a list of language files with errors due to their not beingin compliance with theJoomla! language file specification.
    +
    *'''Fehler in Sprachdateien anzeigen.''' Listet alle Sprachdateien auf, diein Verbindung mit derJoomla!-INI-Spezifikation Fehler auslösen.
    *'''Show Language Files.''' Whether or not to display the language files that have been loaded to generate the page.
    +
    *'''Sprachdateien anzeigen.''' Listet alle Sprachdateien auf, die Joomla! versucht hat zu laden.
    *'''Show Language String.''' Whether or not to include undefined language strings in the debug information.
    +
    *'''Nicht übersetzte Sprachstrings anzeigen.''' Listet alle Sprachstrings auf, die nicht übersetzt wurden.
    *'''Strip First Word.''' Whether or not to always strip the first word in multi-word strings.
    +
    *'''Das erste Wort entfernen.''' Bei Verwendung von Mehrwort-Strings immer das erste Wort entfernen.
    *'''Strip From Start.''' Strips the specified words from the beginning of the language string. For multiple words separate each word with the pipe( ''|'') character like so: word1|word2
    +
    *'''Vom Anfang entfernen.''' Wörter am Anfang des Strings entfernen. Für Mehrwort-Strings folgendes Format anwenden:(Wort1|Wort2)
    *'''Strip From End.''' Strips the specified words from the end of the language string. For multiple words separate each word with the pipe( ''|'') character like so: word1|word2
    +
    *'''Am Ende entfernen.''' Wörter am Ende des Strings entfernen. Für Mehrwort-Strings folgendes Format anwenden:(Wort1|Wort2)
    Logging Debug options:
    +
    Protokollierung-Optionen
      
     
    [[Image:Help30-Extensions-Plugin-Manager-Edit-debug-logging-options-screen-de.png]]
     
    [[Image:Help30-Extensions-Plugin-Manager-Edit-debug-logging-options-screen-de.png]]
      
    ===System - Fields===
    +
    ===System - Felder===
    The system fields plugin that is required to display the custom fields.
    +
    Das System-Plugin ist erforderlich, um eigene Felder anzuzeigen.
      
     
    ===System - Highlight===
     
    ===System - Highlight===
    System plugin to highlight specified terms.
    +
    System Plugin, das spezifizierte Ausdrücke markiert bzw. hervorhebt.
      
    ===System - Joomla! Statistics===
    +
    ===System - Joomla!-Statistikerhebung===
    [[Image:Help30-Extensions-Plugin-Manager-Edit-system-JoomlaStatistics-options-screen-en.png]]
    +
    [[Image:Help30-Extensions-Plugin-Manager-Edit-system-JoomlaStatistics-options-screen-de.png]]
     
    * '''Unique ID'''. An identifier that allows the Joomla! project to count unique installs of the plugin. This is sent with the statistics back to the server.
     
    * '''Unique ID'''. An identifier that allows the Joomla! project to count unique installs of the plugin. This is sent with the statistics back to the server.
     
    * '''Interval (hours)'''. Statistics will be sent every X hours. The default is 12.
     
    * '''Interval (hours)'''. Statistics will be sent every X hours. The default is 12.

Joomla! Security

Security Announcements

  • [20181005] - Core - CSRF hardening in com_installer
    • Project: Joomla!
    • SubProject: CMS
    • Impact:Moderate
    • Severity: Low
    • Versions: 2.5.0 through 3.8.12
    • Exploit type: CSRF
    • Reported Date: 2018-September-26
    • Fixed Date: 2018-October-02
    • CVE Number: CVE-2018-17858

    Description

    Added additional CSRF hardening in com_installer actions in the backend.

    Affected Installs

    Joomla! CMS versions 2.5.0 through 3.8.12

    Solution

    Upgrade to version 3.8.13

    Contact

    The JSST at the Joomla! Security Centre.

    Reported By:Raviraj A. Powar
  • [20181004] - Core - ACL Violation in com_users for the admin verification
    • Project: Joomla!
    • SubProject: CMS
    • Impact:Moderate
    • Severity: Low
    • Versions: 1.5.0 through 3.8.12
    • Exploit type: ACL Violation
    • Reported Date: 2017-December-27
    • Fixed Date: 2018-October-02
    • CVE Number: CVE-2018-17855

    Description

    In case that an attacker gets access to the mail account of an user who can approve admin verifications in the registration process he can activate himself.

    Affected Installs

    Joomla! CMS versions 1.5.0 through 3.8.12

    Solution

    Upgrade to version 3.8.13

    Contact

    The JSST at the Joomla! Security Centre.

    Reported By:Paul Freeman
  • [20181003] - Core - Access level Violation in com_tags
    • Project: Joomla!
    • SubProject: CMS
    • Impact:Moderate
    • Severity: Low
    • Versions: 3.1.0 through 3.8.12
    • Exploit type: ACL Violation
    • Reported Date: 2018-June-20
    • Fixed Date: 2018-October-02
    • CVE Number: CVE-2018-17857

    Description

    Inadequate checks on the tags search fields can lead to an access level violation.

    Affected Installs

    Joomla! CMS versions 3.1.0 through 3.8.12

    Solution

    Upgrade to version 3.8.13

    Contact

    The JSST at the Joomla! Security Centre.

    Reported By:Андрей Капитанов
Follow expmedia1 on Twitter
Web Hosting
Joomla!