Joomla 3.9.8
12 June 2019
Joomla version 3.9.8 is now available.
Upgrading to Joomla 3.9.8
Joomla 3.9.8 can be upgraded to (or installed) using any of Installatron's products. Use Installatron's optional Automatic Update feature to automatically apply Joomla updates as new versions are released, or use Installatron's Clone feature to duplicate an existing Joomla install to test the 3.9.8 upgrade prior to applying it live. Get started managing your Joomla installations with Installatron
What's New in Joomla 3.9.8
3.9.8
Bug fixes and Improvements
- This is a bug fix release for the 3.x series of Joomla which addresses one bug introduced into 3.9.7 which affects web sites using the French Help Server.
3.9.7
Security
- Low Priority - Core - CSV injection in com_actionlogs (affecting Joomla 3.9.0 through 3.9.6) - The CSV export of com_actionslogs is vulnerable to CSV injection.
- Low Priority - Core - XSS in subform field (affecting Joomla 3.6.0 through 3.9.6) - The subform fieldtype does not sufficiently filter or validate input of subfields, this leads to XSS attack vectors.
- Low Priority - Core - ACL hardening of com_joomlaupdate (affecting Joomla 3.8.13 through 3.9.6) - The update server URL of com_joomlaupdate can be manipulated by non Super-Admin users.
Bug fixes and Improvements
- Batch system: Copy permissions of modules #24737 and categories #24730
- Progessive cache improvements #20310
- Fix to avoid duplicated custom fields in com_content #24516
- RTL improvements #23107 #24722
- Removal of the unofficial French Help Server #24927
- TinyMCE improvements: #24978 #25037
- RSS: Fix to display the right category #24932
- Media Manager: Fix directory traversal for symlinked folders #24924
- User registration: Correct http schema used #24089