This release includes several improvements to form handling and file uploads. The default HTML sanitizer configuration has been refined, the password field has been restored in the registration module, and Dropzone has been upgraded to version 6 while also fixing folder uploads. In addition, an issue when appending records to unsorted parent tables has been resolved.
Changelog of the fixed issues in Contao 6.0.1:
-
#10119
Replace the
BackendUser::navigation()method and deprecate thegetUserNavigationhook ( aschempp ) -
#10251
Remove
Backend.enableImageSizeWidgets()( fritzmg ) - #10227 Improve the default configuration of the HTML sanitizer ( ausi )
-
#10245
Change the priorites of the
CsrfTokenCookieSubscriberandMakeResponsePrivateListener( fritzmg ) - #10231 Fix appending records to parent tables without sorting ( Toflar )
-
#10211
Remove
StringUtil::specialchars()from language strings ( leofeyer ) - #10212 Remove two unused language string assignments ( leofeyer )
-
#10213
Fix the invalid HTML
langattribute format ( ausi ) -
#10208
Move translations to the
be_csv_import.html.twigtemplate ( leofeyer ) -
#10200
AbstractPublicUriProvider::getVersionParameter()never returnsnull( leofeyer ) -
#10209
Use
app.localeinstead of$GLOBALS['TL_LANGUAGE']in Twig templates ( leofeyer ) -
#10197
Update
vstelmakh/url-highlightto v4 ( vstelmakh ) - #10205 Re-add the password field to the registration module ( leofeyer )
-
#10201
Use
random_bytes()instead ofmt_rand()( leofeyer ) -
#10196
Clean up the
TRBLwidget leftovers ( zoglo ) - #10192 Upgrade to Dropzone 6 ( leofeyer )
- #10193 Fix the Dropzone folder upload ( zoglo )
-
#10171
Restore the tooltip title before
AjaxRequest.toggleField()runs ( zoglo )
About Contao 6.0
The first stable version of Contao 6.0 has been released on 26 August 2026 and will be the successor to Contao 5.7. 6.0 will be updated until 14 February 2027, after which it will be replaced by Contao 6.1.