SuiteCRM 7.14.3
29 April 2024
SuiteCRM version 7.14.3 is now available (major release).
Upgrading to SuiteCRM 7.14.3
SuiteCRM 7.14.3 can be upgraded to (or installed) using any of Installatron's products. Use Installatron's optional Automatic Update feature to automatically apply SuiteCRM updates as new versions are released, or use Installatron's Clone feature to duplicate an existing SuiteCRM install to test the 7.14.3 upgrade prior to applying it live. Get started managing your SuiteCRM installations with Installatron
What's New in SuiteCRM 7.14.3
7.14.3
Bug Fixes
- PR: 10265 - Fix #5392 - My Filters doesn`t show up on Project Tasks
- PR: 10266 - Fix #9563 - HTML Type field doesn’t populate
- PR: 10271 - Fix #373 - Google API Token not working
- PR: 10295 - Fix #10242 - Mass Security Group Assignment fails when multiple items from the same page are chosen
- PR: 10296 - Fix #10296 - Add duplication logic check on run_when Always
- PR: 10297 - Fix #9453 - User 'delete' option missing from menu
- PR: 10306 - Fix 5906 - Currency symbol for currency field in popup is always default
- PR: 10301 - Fix 10234 - Enum-type fields may have their values reset to their defaults, if they have non-blank defaults
- PR: 10300 - Fix #10302 - IMAP INBOUND EMAIL error
- PR: 10299 - Fix #9853 - The "Case Macro" field now appears empty by Default
- PR: 10312 - Fix #10312 - Group External Connection Changing type on edit
- PR: 10313 - Fix #10313 - Remove unused line in repair
- PR: 10294 - Fix #9144 - Popup error messages
- PR: 10293 - Fix 9858 - "Distribution Method" is not retained on Editview Load
- PR: 10292 - Fix #2833 - Process Audit Advanced Search
- PR: 10281 - Fix #10093 - Results are not filtered in the Targets Module popup
- PR: 10278 - Fix #6397 - Studio: Reset Module: Remove Custom Fields
- PR: 10314 - Fix #10314 - disabling active languages
- PR: 10283 - Fix #10283 - When selecting an Outbound Email Account, From/Reply Information should autopopulate for user convenience
- PR: 10308 - Fix #10307 - Retrieve object name via beanfactory
- PR: 10311 - Fix #10310 - Survey reports ui improvements
- PR: 10275 - Fix #10207, #10209 - Multiple Elasticsearch indexing issues
7.14.2
Security
- CVE: CVE-2023-6130 - LFI to RCE Vulnerability
- CVE: CVE-2023-6128 - Reflected XSS Vulnerability
- CVE: CVE-2023-6131 - Arbitrary File Upload to RCE
- CVE: CVE-2023-6127 - Import XSS Vulnerability
- CVE: CVE-2023-6126 - Dashlet HTML Injection Vulnerability
- CVE: CVE-2023-6125 - PDF XSS Vulnerability
- CVE: CVE-2023-6124 - SSRF Vulnerability
Bug Fixes
- PR: 10253 - Fix #10252 - Google Maps Geocoded Counts not displaying properly
- PR: 10248 - Fix #9537 - Activity subpanel isn’t working in a module with a parent_type / flex relate field
- PR: 10241 - Fix #9898 - Invalid cookie domain when using non-standard HTTP Port
- PR: 9522 - Fix #9435 - Dropdown doesn’t return empty selected value
- PR: 10246 - Fix #10246 - non-admin’s outbound email link not showing
- PR: 10220 - Fix #10220 - Add Email Body Filtering Selection
- PR: 10212 - Fix #10199 - PHP Fatal error: Uncaught Error: Non-static method SugarWidgetReportField::_get_column_select()
- PR: 10206 - Fix #10205 - Compatibility hotfix for PHP 8 in ActivitiesRelationship.php
- PR: 10201 - Fix #9950 editing Email settings drops TLS SSL selection
- PR: 10160 - Fix #10159 - Accounts - Not able to search by fax on 'Any Phone' search field
- PR: 10143 - Fix #10143 - Update ready.php change checking of upload max filesize from > to >=
- PR: 10142 - Fix #10141 - Orphaned Case Attachments bug
- PR: 10122 - Fix #10115 - Wokflow Calculate Action broken under PHP8
- PR: 10114 - Fix #10114 - parameter userTime method in class TimeDate
- PR: 10049 - Fix #10049 - Relationship::delete expects a string
- PR: 10028 - Fix #10028 - Allow workflow to send plain text emails
- PR: 10027 - Fix #10027 - Respect wildcard in front when searching a full name in basic search
- PR: 9964 - Fix #8980 - Check beanFiles for class path
- PR: 9881 - Fix #9880 - Error when importing currency fields with a decimal separator
- PR: 9524 - Fix #9440 - Forcing default null value for numeric core fields
- PR: 9459 - Fix #9456 - choose email provider does not populate SMTP settings
- PR: 9413 - Fix #9412 - Wrong email value displayed when aborting an inline edition
- Unify jquery versions
7.14.1
Security
- CVE: CVE-2023-5351: Stored XSS Vulnerability
- CVE: CVE-2023-5353: Improper Access Control
- CVE: CVE-2023-5350: SQL Injection Vulnerability
Bug Fixes
- PR: 9864 - Fix #9807 - Email import fix
- PR: 9806 - Fix #9805 - Use timezone offset for datetime only
- PR: 9726 - Fix #9725 - Date field value isn’t saved in a Workflow action related module
- PR: 10185 - Fix #10184 - Timezone not set on silent install
- PR: 10140 - Fix #10139 - HTML Text Field tinyMCE version
- PR: 10132 - Fix #10131 - Fix issue with file mode changes not being applied on cache rebuild
- PR: 10110 - Fix #10109 - Add displayParams.initial_filter to Parent
- PR: 9996 - Fix #8939 - Fix Static call to non-static method in AOW_WorkFlow
- PR: 9999 - Fix #9021 - User Preferences Wrong Label
- PR: 10005 - Fix #9574 - Avoid calling method in a static way
- PR: 10058 - Fix #5390 - Redundant message when duplicating a survey
- PR: 10130 - Fix #10129 - Fix issue with step 2 & 3 on the importer failing
- PR: 10092 - Fix #9062 - Studio layout changes not being reflected
- PR: 10008 - Fix #10007 - Text area cannot span two fields
- PR: 10016 - Fix #5712 - Alerts in the menu bar are not displayed with Night theme
- PR: 10158 - Fix #10157 - Numbering display issue on subpanels
- PR: 10064 - Fix #3842 - Vertical Scroll bar missing in Studio Layouts
- PR: 10102 - Fix #5385 - Fix Closed survey issues
- PR: 10063 - Fix #2111 - Hover over favorites item, shows module name, not label
- PR: 10079 - Fix #3050 - AOW: dropdown lists is not updating (calclulate field & modified record action)
- PR: 9997 - Fix #8359 - Fix Contract renewal reminder title is hardcoded
- PR: 9994 - Fix #9148 - Fix missing sorting labels
- PR: 10020 - Fix #10020 - Issue with missing label on Contact Module
- PR: 10195 - Fix #10195 - dropdown keys are not the same type
- PR: 10060 - Fix #10060 - User preferences detail-view template issues
- PR: 10120 - Fix #10120 - Inbound Email Issues
- PR: 9941 - Fix #9941 - Remove sugar pro flavor
7.14.0
Enhancement: Smarty Upgrade
- Smarty, the templating engine used in SuiteCRM 7.x, has been upgraded to v4 which brings some minor performance improvements and better compatibility going forward.
Enhancement: PHP 8.2 Support
- This release brings a number of adjustments and updates in order to support PHP 8.2.
- Removal of deprecated functions/ features
- Updated missing labels
- Update functions to PHP 8.2 standard
- Fixed Unit & Acceptance Tests
- Executed Rector to clean up code
- Fixed code to eliminate warnings from logs
Bug Fixes
- PR: 10116 - Fix #10053 - Issue when creating new tabs on Dashlets
- PR: 10106 - Fix #10105 - Fix 500 error when saving audited numeric field
- PR: 10108 - Fix #10107 - Function getRelatedId is unable to return NULL values