Contao 4.13.45, a new version of the Contao open source CMS, has been released.

In particular, this release contains more improvements to CSRF handling (request token). If there are problems with sending forms, this bugfix release should definitely be installed. Otherwise, all DCAs in the back end can now be searched by ID and the system logs are also written to var/logs again.

Changelog of the fixed issues in Contao 4.13.45:

  • #7180 Correctly show the file tree if the widget is restricted to a path (leofeyer)
  • #7275 Make ID always searchable in DC_Table (Toflar)
  • #7281 Check CSRF and private response after the session (ausi)
  • #7277 Improve the docs of `quoteIdentifier()` and `findInSet()` (ausi)
  • #7263 Handle failed `preg_split()` return values for image sources (aschempp)
  • #7266 Delete search index entries under more specific conditions (fritzmg)
  • #7264 Replace non-routable URLs with an empty string for the `` insert tags (fritzmg)
  • #7246 Use `ENT_QUOTES|ENT_SUBSTITUTE|ENT_HTML5` instead of just `ENT_QUOTES` (leofeyer)
  • #7255 Support `buildIfResourceExists()` in the preview factory (ausi)
  • #7254 Do not update the `tstamp` column on cut/paste (ausi)
  • #7247 Support MODIFY queries in the database installer (Toflar)
  • #7248 Handle legacy keywords when rendering an article in the back end (fritzmg)
  • #7240 Only handle `GET` requests in the search index listener (fritzmg)
  • #7233 Fix the `_token_check` logic (leofeyer)
  • #7236 Add 'Bubble the back end log entries to file logs' again (leofeyer)

About Contao 4.13 LTS

The first stable version of Contao 4.13 has been released on February 17, 2022, replacing Contao 4.9 as the long term support version. As an LTS version, 4.13 will be provided with bug fixes until February 14, 2025 and security-related updates until February 14, 2026. Contao 5.3 will be the next LTS version of Contao and has been released in February 2024, ensuring a stress-free transition.

Add a comment

Please add 4 and 6.