matomo 8.x-1.24
Fixes SA-CONTRIB-2025-008
Contributors (3)
Shubham Rathore, shelane, shubhamrathore01
Changelog
Issues: 1 issues resolved.
Fixes SA-CONTRIB-2025-008
Shubham Rathore, shelane, shubhamrathore01
Issues: 1 issues resolved.
This is a security release for Google Tag 2.x. No other changes have been made since 2.0.7.
Google Tag - Moderately critical - Cross Site Scripting - SA-CONTRIB-2025-011
Google Tag - Moderately critical - Cross Site Request Forgery - SA-CONTRIB-2025-012
NOTES
- This release is compatible with Drupal 8.8, 8.9, 9.x, or 10.x.
- It may be necessary to apply the core patch in [#3114467] if the GTM snippets are no longer added to the page. This applies if other modules defining condition plugins are used on the site.
catch of the Drupal Security Team, Dieter Holvoet, Heine Deelstra of the Drupal Security Team
Issues: 1 issue resolved.
Changes since 1.0.3:
Added CSRF check on the Deepchat endpoint.
See AI (Artificial Intelligence) - Critical - Cross Site Request Forgery - SA-CONTRIB-2025-003.
Open Social - Moderately critical - Access bypass - SA-CONTRIB-2024-076
Few notes to take into account:
Open Social - Moderately critical - Access bypass - SA-CONTRIB-2024-076
Few notes to take into account:
Login Disable - Critical - Access bypass - SA-CONTRIB-2024-073