Changelog 5 0 » History » Version 15
Marius BĂLTEANU, 2025-03-11 00:29
Updates for 5.0.12
1 | 1 | Marius BĂLTEANU | h1. Changelog 5.0.x |
---|---|---|---|
2 | |||
3 | 15 | Marius BĂLTEANU | h2. version:5.0.12 (2025-03-10) |
4 | |||
5 | h3. [Security] |
||
6 | |||
7 | * Defect #42194: /my/account does not correctly enforce sudo mode |
||
8 | * Patch #42333: Update Nokogiri to 1.18.3 |
||
9 | |||
10 | 14 | Go MAEDA | h2. version:5.0.11 (2025-01-30) |
11 | |||
12 | h3. [Code cleanup/refactoring] |
||
13 | |||
14 | * Patch #42140: Update footer copyright year to 2025 |
||
15 | |||
16 | h3. [Rails support] |
||
17 | |||
18 | * Defect #42113: Redmine 5.x not starting with ActiveSupport Logger error |
||
19 | |||
20 | 13 | Marius BĂLTEANU | h2. version:5.0.10 (2024-11-03) |
21 | |||
22 | h3. [Code cleanup/refactoring] |
||
23 | |||
24 | * Patch #41313: Fix test/unit/issue_test.rb to use correct IANA timezone name "Asia/Hong_Kong" instead of deprecated "Hongkong" |
||
25 | |||
26 | h3. [Gantt] |
||
27 | |||
28 | * Defect #41263: Gantt progress line misrendering for 0% progress issues/versions with future start dates beyond chart range |
||
29 | |||
30 | h3. [I18n] |
||
31 | |||
32 | * Defect #37072: Capitalization issue for object names in I18n keys: button_save_object, button_edit_object, and button_delete_object |
||
33 | |||
34 | h3. [Importers] |
||
35 | |||
36 | * Defect #41465: "Import issues" and "Import time entries" pages are visible to users without "Add issues" and "Log spent time" permissions |
||
37 | |||
38 | h3. [Issues] |
||
39 | |||
40 | * Defect #8539: Fix NoMethodError in Issue#blocked? due to invalid issue_from_id in Issue#relations_from |
||
41 | |||
42 | h3. [Ruby support] |
||
43 | |||
44 | * Patch #41489: Update Rails to 6.1.7.10 |
||
45 | |||
46 | h3. [Security] |
||
47 | |||
48 | * Defect #40946: Watcher list visible with only add watchers permissions |
||
49 | |||
50 | h3. [SCM] |
||
51 | |||
52 | * Defect #40948: ActiveRecord::ValueTooLong error with git author longer than 255 characters |
||
53 | |||
54 | h3. [Text formatting] |
||
55 | |||
56 | * Defect #41096: "##" syntax auto complete does not work |
||
57 | |||
58 | h3. [Time tracking] |
||
59 | |||
60 | * Defect #40924: Spent Hours ignoring "Time Span Format" Setting on several pages |
||
61 | |||
62 | h3. [Translations] |
||
63 | |||
64 | * Patch #40875: Improve Czech translation for "two-factor authentication" |
||
65 | * Patch #40950: Improve english translation for invalid watcher notice |
||
66 | |||
67 | h3. [UI] |
||
68 | |||
69 | * Patch #41624: CSS-fix to prevent 'blinking' tooltips |
||
70 | |||
71 | h3. [Wiki] |
||
72 | |||
73 | * Defect #40655: Revisions count is wrong on the wiki content page |
||
74 | |||
75 | 12 | Go MAEDA | h2. version:5.0.9 (2024-06-11) |
76 | |||
77 | h3. [Gems support] |
||
78 | |||
79 | * Defect #40603: Mocha 2.2.0 causes test failure: "unexpected invocation" |
||
80 | * Patch #40802: Support builder 3.3.0 |
||
81 | |||
82 | h3. [Issues] |
||
83 | |||
84 | * Defect #40410: Watcher groups on new issue form get dereferenced on validation error |
||
85 | * Defect #40412: Issue list filter "Watched by: me" only shows issues watched via group for projects with the view_issue_watchers permission |
||
86 | * Feature #40556: Focus on the textarea after clicking the Edit Journal button |
||
87 | |||
88 | h3. [Performance] |
||
89 | |||
90 | * Defect #40610: Slow display of projects list when including project description column |
||
91 | |||
92 | h3. [Rails support] |
||
93 | |||
94 | * Patch #40818: Update Rails to 6.1.7.8 |
||
95 | |||
96 | 11 | Marius BĂLTEANU | h2. version:5.0.8 (2024-03-04) |
97 | |||
98 | h3. [Activity view] |
||
99 | |||
100 | * Defect #39995: Project Activities and Roadmap views disclose presence of private sub projects |
||
101 | |||
102 | h3. [Code cleanup/refactoring] |
||
103 | |||
104 | * Patch #39894: Explicitly render a 404 on non-JS requests to watchers#new |
||
105 | * Patch #39999: Explicitly render a 404 on non-JS requests to messages#quote |
||
106 | * Patch #40043: Remove year ranges from all copyright headers |
||
107 | |||
108 | h3. [Filters] |
||
109 | |||
110 | * Defect #39991: Fix "any" operator for text filters to exclude empty text values |
||
111 | |||
112 | h3. [Plugin API] |
||
113 | |||
114 | * Defect #39862: Attachments functionality for (custom) plugins broken since fix for CVE-2022-44030 |
||
115 | * Feature #39948: Add Redmine::Plugin proxy method for Redmine::Acts::Attachable::ObjectTypeConstraint.register_object_type |
||
116 | |||
117 | h3. [Rails support] |
||
118 | |||
119 | * Patch #40319: Update Rails to 6.1.7.7 |
||
120 | |||
121 | h3. [SEO] |
||
122 | |||
123 | * Defect #40208: An ActionController::RespondToMismatchError occurred in welcome#robots |
||
124 | |||
125 | h3. [Security] |
||
126 | |||
127 | * Defect #39875: Mitigate CVE-2023-23913 (rails-ujs) |
||
128 | |||
129 | h3. [Text formatting] |
||
130 | |||
131 | * Defect #40193: Performance issue with email address auto-linking in the default ("none") formatter |
||
132 | * Feature #39884: Allow multiple footnotes per single word |
||
133 | |||
134 | h3. [Translations] |
||
135 | |||
136 | * Defect #39801: Fix typo in Russian translation of text_status_no_workflow |
||
137 | |||
138 | h3. [UI] |
||
139 | |||
140 | * Defect #39780: User select element on activity sidebar views cutoff when displaying long user names |
||
141 | * Defect #39802: Fix click event handling in mobile view after closing flyout menu |
||
142 | * Defect #40237: Error in autocomplete (`ActionController::BadRequest (Invalid query parameters: invalid %-encoding (%)`) |
||
143 | |||
144 | 10 | Marius BĂLTEANU | h2. version:5.0.7 (2023-11-27) |
145 | |||
146 | h3. [Email notifications] |
||
147 | |||
148 | * Defect #39553: Mention notification is not sent (MENTION_PATTERN / LINKS_RE inconsistency) |
||
149 | |||
150 | h3. [Issues] |
||
151 | |||
152 | * Defect #39521: Mention autocomplete not displaying for users without "Edit issues" permission |
||
153 | |||
154 | h3. [PDF export] |
||
155 | |||
156 | * Defect #39534: Error (undefined method) in issue list PDF export |
||
157 | |||
158 | h3. [Text formatting] |
||
159 | |||
160 | * Defect #38852: ## issue syntax is not kept when selecting an issue from the inline autocomplete |
||
161 | |||
162 | 9 | Go MAEDA | h2. version:5.0.6 (2023-09-30) |
163 | |||
164 | h3. [Code cleanup/refactoring] |
||
165 | |||
166 | * Defect #38797: Fix incorrect argument format for assert_select |
||
167 | |||
168 | h3. [Custom fields] |
||
169 | |||
170 | * Defect #38464: Rendering a custom field with a URL pattern set and containing " :" in the value raises Addressable::URI::InvalidURIError |
||
171 | |||
172 | h3. [Gantt] |
||
173 | |||
174 | * Defect #38728: Correctly escape issue text in Gantt PNG export for ImageMagick convert |
||
175 | |||
176 | h3. [Gems support] |
||
177 | |||
178 | * Patch #39070: Allow using the latest version of mocha even when using Ruby < 2.7 |
||
179 | |||
180 | h3. [Groups] |
||
181 | |||
182 | * Defect #38443: Cannot add a user to a group if the group is a member without roles in a certain project |
||
183 | |||
184 | h3. [PDF export] |
||
185 | |||
186 | * Defect #37694: CommonMark Markdown task list item markers are not exported to PDF |
||
187 | |||
188 | h3. [Project settings] |
||
189 | |||
190 | * Defect #37166: Roles of a project member should not be made empty |
||
191 | |||
192 | h3. [Projects] |
||
193 | |||
194 | * Defect #38286: "Cannot delete enumeration" error may occur when attempting to delete a project with time entries |
||
195 | |||
196 | h3. [Rails support] |
||
197 | |||
198 | * Patch #38374: Update Rails to 6.1.7.6 |
||
199 | |||
200 | h3. [Ruby support] |
||
201 | |||
202 | * Defect #38617: Redmine 4.2 on Ruby 2.4 is not compatible with loofah 2.21 or higher |
||
203 | |||
204 | h3. [Security] |
||
205 | |||
206 | * Defect #38539: Update Nokogiri to 1.15.2 in 5.0-stable and 4.2-stable |
||
207 | * Defect #38807: XSS in Textile formatter |
||
208 | * Defect #38806: XSS in Markdown formatter |
||
209 | * Defect #38417: XSS Vulnerability in Thumbnails |
||
210 | |||
211 | h3. [Text formatting] |
||
212 | |||
213 | * Defect #38697: Exception during thumbnail macro to image tag conversion in emails |
||
214 | |||
215 | h3. [Time tracking] |
||
216 | |||
217 | * Defect #39079: NoMethodError when trying to remove the date of an existing time entry |
||
218 | |||
219 | h3. [Translations] |
||
220 | |||
221 | * Defect #38507: Fix typo in French translation of setting_bulk_download_max_size |
||
222 | * Patch #38533: Improve the clarity of German translation of label_user_mail_notify_about_high_priority_issues_html |
||
223 | |||
224 | h3. [UI] |
||
225 | |||
226 | * Defect #33502: Issue field labels for fields with descriptions are missing styling on issues show view |
||
227 | * Defect #38448: The margin below the Submit button on the issue edit page is too narrow |
||
228 | * Patch #38359: Render numeric axes in charts as Integers |
||
229 | |||
230 | 8 | Go MAEDA | h2. version:5.0.5 (2023-03-05) |
231 | |||
232 | h3. [Code cleanup/refactoring] |
||
233 | |||
234 | * Patch #38141: Update copyright year to 2023 |
||
235 | |||
236 | h3. [Documentation] |
||
237 | |||
238 | * Defect #38114: Example plugin (extra/sample_plugin) breaks Activity page |
||
239 | |||
240 | h3. [Gems support] |
||
241 | |||
242 | * Defect #38239: Test failure with Commonmarker 0.23.8 |
||
243 | * Patch #38135: Allow use of Puma 6.0.0 or later |
||
244 | * Patch #38272: Update RBPDF to 1.21 |
||
245 | |||
246 | h3. [Groups] |
||
247 | |||
248 | * Patch #38144: Refactoring: Use Group.visible instead of manual visibility check in GroupsController |
||
249 | |||
250 | h3. [Importers] |
||
251 | |||
252 | * Defect #38254: Time Entry Import fails to import custom fields with "User" format |
||
253 | |||
254 | h3. [Issues] |
||
255 | |||
256 | * Defect #37755: Mentioning users with certain characters renders incorrectly |
||
257 | * Defect #38217: "Property changes" tab does not appear when all issue journals have both notes and property changes |
||
258 | |||
259 | h3. [PDF export] |
||
260 | |||
261 | * Defect #32740: Incorrect characters when copying out of a Redmine generated PDF |
||
262 | * Defect #36452: Infinite loop on PDF export if image included with attributes |
||
263 | |||
264 | h3. [Project settings] |
||
265 | |||
266 | * Defect #38064: Avoid exception when adding a project without any givable roles defined |
||
267 | |||
268 | h3. [Rails support] |
||
269 | |||
270 | * Defect #36273: Modifying the source code of a plugin does not reload it after r21295 |
||
271 | * Defect #38199: Fix deprecation warning for db:structure:dump in db:migrate when using sql schema format |
||
272 | * Patch #38191: Update Rails to 6.1.7.2 |
||
273 | |||
274 | h3. [Security] |
||
275 | |||
276 | * Defect #38063: Avoid double-render error with ApplicationController#find_optional_project |
||
277 | * Defect #38070: Role#permission_tracker? and related does not consider whether the base permission is (still) set |
||
278 | * Defect #38133: Update Nokogiri to fix several security issues |
||
279 | * Defect #38297: Insufficient permission checks when adding attachments to issues |
||
280 | |||
281 | h3. [SEO] |
||
282 | |||
283 | * Defect #38201: Fix robots.txt to disallow issue lists with a sort or query_id parameter in any position |
||
284 | |||
285 | h3. [Text formatting] |
||
286 | |||
287 | * Defect #37881: Thumbnails are no longer fetched for all notes of an issue |
||
288 | * Defect #38073: CommonMark Markdown formatter does not support min-width, max-width, min-height, and max-height CSS properties |
||
289 | * Defect #38215: Nested CommonMark Markdown task lists are not indented |
||
290 | |||
291 | h3. [Time tracking] |
||
292 | |||
293 | * Defect #35066: Missing project_id in redirect after clicking "Create and add another" button |
||
294 | * Defect #38237: Unable to choose any user other than the current user when logging spent time after clicking "Create and add another" |
||
295 | |||
296 | 6 | Marius BĂLTEANU | h2. version:5.0.4 (2022-12-01) |
297 | |||
298 | h3. [Activity view] |
||
299 | |||
300 | * Defect #37875: Unnecessary closing li element when there is no "Next" button on Activity page |
||
301 | |||
302 | h3. [Code cleanup/refactoring] |
||
303 | |||
304 | * Patch #37938: Unused permission "Mention user" |
||
305 | |||
306 | h3. [Documentation] |
||
307 | |||
308 | * Defect #37983: Duplicate vertical-align property in wiki_syntax.css |
||
309 | |||
310 | h3. [Gems support] |
||
311 | |||
312 | * Defect #37884: All system tests fail on 4.2-stable branch with "ArgumentError: unknown keyword: :desired_capabilities" |
||
313 | * Patch #37867: Limit puma < 6.0.0 to avoid system test error |
||
314 | * Patch #37883: Limit mocha version to < 2.0.0 when Ruby version is < 2.7 to avoid test error |
||
315 | |||
316 | h3. [Issues] |
||
317 | |||
318 | * Defect #37958: Groups added to watchers are not shown as links |
||
319 | |||
320 | h3. [Issues workflow] |
||
321 | |||
322 | * Defect #37685: Read-only field permission for the project field is ignored if the current project has subprojects |
||
323 | |||
324 | h3. [Projects] |
||
325 | |||
326 | * Defect #37925: Do not allow unkown display_type for query |
||
327 | |||
328 | h3. [Rails support] |
||
329 | |||
330 | * Defect #37814: Plugins that serialize Date or Time objects cause Psych::DisallowedClass exception |
||
331 | |||
332 | h3. [Security] |
||
333 | |||
334 | 7 | Marius BĂLTEANU | * Defect #37772: Access Control Issue in attachments#download_all |
335 | 6 | Marius BĂLTEANU | * Defect #37751: Persistent XSS in textile formatting due to blockquote citation |
336 | * Defect #37767: Redmine contains a cross-site scripting vulnerability |
||
337 | * Defect #37880: Open Redirect in attachments#download_all |
||
338 | |||
339 | h3. [Translations] |
||
340 | |||
341 | * Defect #37812: "Yes" and "No" are swapped in Polish translation |
||
342 | |||
343 | 5 | Marius BĂLTEANU | h2. version:5.0.3 (2022-10-02) |
344 | |||
345 | h3. [Code cleanup/refactoring] |
||
346 | |||
347 | * Defect #37609: Remove obsolete remnant public/images/openid-bg.gif |
||
348 | * Defect #37449: Passing a wrong parameter to `with_settings` in UserTest::test_random_password_include_required_characters |
||
349 | |||
350 | h3. [Filters] |
||
351 | |||
352 | * Defect #36940: Chained custom field filter doesn't work for User fields |
||
353 | * Defect #37349: Chained custom field filter for User fields returns 500 internal server error when filtering after a float value |
||
354 | |||
355 | h3. [Issues] |
||
356 | |||
357 | * Defect #37369: Mention auto-complete not works in bulk-edit comments |
||
358 | * Defect #37499: Default query should not be applied if the query is not allowed to be set as the default |
||
359 | * Defect #37473: Focus IssueId not working when linking issues |
||
360 | |||
361 | h3. [Issues list] |
||
362 | |||
363 | * Defect #37268: Performance problem with Redmine 4.2.7 and 5.0.2 |
||
364 | |||
365 | h3. [Rails support] |
||
366 | |||
367 | * Patch #37452: Update Rails to 6.1.7 |
||
368 | |||
369 | h3. [Security] |
||
370 | |||
371 | * Defect #37492: Update jQuery UI to 1.13.2 |
||
372 | |||
373 | h3. [SCM] |
||
374 | |||
375 | * Defect #33953: Repository tab is not displayed if no repository is set as the main repository |
||
376 | * Defect #36258: Support revision without any message in Mercurial repositories |
||
377 | * Defect #37585: Do not show "History" tab for content in Filesystem repository |
||
378 | * Defect #37626: Diff of a javascript file in repository module is not displayed with layout |
||
379 | * Defect #37718: Repository browser does not show "+" (plus sign) in filename |
||
380 | |||
381 | h3. [SCM extra] |
||
382 | |||
383 | * Defect #37562: POST Requests to repository WS fail with "Can't verify CSRF token authenticity" |
||
384 | |||
385 | h3. [Text formatting] |
||
386 | |||
387 | * Defect #37237: Common Markdown Formatter does not render all properties on HTML elements |
||
388 | * Patch #37713: Add rel="noopener" to all external links that would open a new tab/window |
||
389 | * Defect #37379: Thumbnail macro does not work when a file is attached and preview is displayed immediately |
||
390 | |||
391 | h3. [Translations] |
||
392 | |||
393 | * Defect #37529: Fix mistranslation of label button_create_and_follow in Russian translation |
||
394 | * Defect #37603: Missing translation for label_default_queries.for_this_user |
||
395 | * Patch #35613: German translation update of Wiki syntax help for 5.0-stable |
||
396 | * Patch #37263: Lithuanian translation update for 5.0-stable |
||
397 | * Patch #37698: Persian translation update for 4.2-stable |
||
398 | |||
399 | h3. [UI] |
||
400 | |||
401 | * Defect #36901: Jump to project is misaligned in Safari 15.4 and later |
||
402 | * Defect #37282: Subtask isn't displayed correctly since 4.2.7 |
||
403 | * Defect #37481: Fix the unintentional selection of rows with the context menu |
||
404 | * Defect #37566: The number of the ordered list in the project description is not displayed and the indentation does not match the unordered list |
||
405 | |||
406 | 4 | Marius BĂLTEANU | h2. version:5.0.2 (2022-06-21) |
407 | |||
408 | h3. [Email notifications] |
||
409 | |||
410 | * Defect #37138: Mentions of users with "@" in their username |
||
411 | * Patch #37065: When someone is member of watcher group, 'watched_by' may be wrong and incomplete |
||
412 | * Defect #37162: Missing space between notification sentence and author name when edit a wiki page |
||
413 | |||
414 | h3. [Email receiving] |
||
415 | |||
416 | * Defect #37187: no-permission-check allows issue creation in closed/archived projects |
||
417 | |||
418 | h3. [Gems support] |
||
419 | |||
420 | * Defect #35892: Redmine::WikiFormatting::CommonMark::FormatterTest#test_footnotes fails with CommonMarker 0.23.2 |
||
421 | * Defect #37249: Missing rexml gem causes errors in PUT - Adding the gem manually everything works |
||
422 | |||
423 | h3. [Issues] |
||
424 | |||
425 | * Patch #37155: Issue#last_notes fallback does not respect notes visibility |
||
426 | * Defect #37151: The done ratio of a parent issue may not be 100% even if all subtasks have a done ratio of 100% |
||
427 | * Defect #37171: Ability to change the issue category or issue target version with nonexistent value for the specific project |
||
428 | |||
429 | h3. [Performance] |
||
430 | |||
431 | * Patch #37135: Reduce extra queries in ProjectQuery.default |
||
432 | |||
433 | h3. [REST API] |
||
434 | |||
435 | * Defect #37157: Internal server error when trying to retrieve AnonymousUser's information via Users API |
||
436 | |||
437 | h3. [Security] |
||
438 | |||
439 | * Defect #37255: Information Leak in QueryAssociationColumn/QueryAssociationCustomFieldColumn |
||
440 | * Defect #37256: Medium severity XSS security vulnerabilities (3x) in jQuery UI v1.12.1 |
||
441 | * Defect #37136: Remote code execution vulnerability in commonmarker |
||
442 | |||
443 | h3. [Text formatting] |
||
444 | |||
445 | * Defect #37130: Wiki notation `attachment:file_name` cannot make a link to a file attached to other journals |
||
446 | |||
447 | h3. [Time tracking] |
||
448 | |||
449 | * Defect #33914: Even if the default value of Activities (time tracking) is set, it may not be reflected. |
||
450 | |||
451 | h3. [UI - Responsive] |
||
452 | |||
453 | * Defect #36453: Issue subject overflow in subtasks and relations tables |
||
454 | |||
455 | 2 | Marius BĂLTEANU | h2. version:5.0.1 (2022-05-16) |
456 | |||
457 | h3. [Administration] |
||
458 | |||
459 | * Defect #36932: Handle nil return of Redmine::Themes.theme(Setting.ui_theme) in Redmine::Info.environment |
||
460 | |||
461 | h3. [Attachments] |
||
462 | |||
463 | 3 | Go MAEDA | * Defect #36887: copyImageFromClipboard function failed to generate a unique file name |
464 | * Patch #36817: copyImageFromClipboard function targets the first file input of the page and may conflict with other plugins |
||
465 | 2 | Marius BĂLTEANU | * Defect #37053: Attachments are lost when the status of the ticket is changed |
466 | |||
467 | h3. [Documentation] |
||
468 | |||
469 | * Defect #36862: Duplicate v5.0.0 section in Changelog |
||
470 | * Defect #36863: Missing v4.2.5 section in Changelog |
||
471 | |||
472 | h3. [Email notifications] |
||
473 | |||
474 | * Defect #36909: Mentions not working if status is changed |
||
475 | |||
476 | h3. [Email receiving] |
||
477 | |||
478 | * Defect #37030: Requests fail with "Can't verify CSRF token authenticity" in mail handler |
||
479 | |||
480 | h3. [Gems support] |
||
481 | |||
482 | * Defect #36892: Redmine does not start when installed --without markdown |
||
483 | |||
484 | h3. [I18n] |
||
485 | |||
486 | * Defect #36998: Revert lazy loading of i18n files introduced in Redmine 5.0 |
||
487 | |||
488 | h3. [Rails support] |
||
489 | |||
490 | * Patch #36917: Update Rails to 6.1.6 |
||
491 | |||
492 | h3. [Security] |
||
493 | |||
494 | * Patch #36912: Update Nokogiri versions to fix two critical CVE's |
||
495 | |||
496 | h3. [Text formatting] |
||
497 | |||
498 | * Defect #36958: Crafted input breaks CommonMark Markdown formatter |
||
499 | |||
500 | h3. [Translations] |
||
501 | |||
502 | * Patch #36905: German translation update for 5.0-stable |
||
503 | * Patch #36930: Bulgarian translation update for 5.0-stable |
||
504 | * Patch #36934: Russian translation update for 5.0-stable |
||
505 | * Patch #37003: Czech translation update for 5.0-stable |
||
506 | * Patch #37024: Galician translation update for 5.0-stable |
||
507 | * Patch #37025: Polish translation update for 5.0-stable |
||
508 | |||
509 | 1 | Marius BĂLTEANU | h2. version:5.0.0 (2022-03-28) |
510 | |||
511 | h3. [Accounts / authentication] |
||
512 | |||
513 | * Feature #30998: Add an rake task to prune registered users after a certain number of days |
||
514 | * Feature #31920: Require 2FA only for certain user groups |
||
515 | * Feature #33345: Include an authentication method name in LDAP connection error messages |
||
516 | * Feature #35001: Disable API authentication with username and password when two-factor authentication is enabled for the user |
||
517 | * Feature #35439: Option to require 2FA only for users with administration rights |
||
518 | * Feature #36825: Increase email address length limit from 60 to 254 |
||
519 | |||
520 | h3. [Administration] |
||
521 | |||
522 | * Defect #35421: Unhandled exception when a YAML syntax error is detected in configuration.yml |
||
523 | * Feature #32116: Add configured theme to Redmine::Info |
||
524 | * Feature #35562: Show warning in admin/info when there are pending migrations |
||
525 | * Feature #35934: Show 2FA status in users list from administration with option to filter |
||
526 | * Feature #36391: Change the default value for "Time span format" from "decimal" to "minutes" |
||
527 | |||
528 | h3. [Attachments] |
||
529 | |||
530 | * Defect #35539: Race condition (possible filename collision) in Attachment.disk_filename |
||
531 | * Feature #32898: PDF thumbnails support on Windows |
||
532 | * Feature #35462: Download all attachments in a journal |
||
533 | |||
534 | h3. [Code cleanup/refactoring] |
||
535 | |||
536 | * Defect #31132: Remove unused column trackers.is_in_chlog |
||
537 | * Defect #36149: Typo in CSS class for lists expander icon |
||
538 | * Defect #36361: IssueRelationsControllerTest#test_bulk_create_should_show_errors randomly fails |
||
539 | * Defect #36394: Avoid passing ActionController::Parameters outside of MailHandlerController |
||
540 | * Feature #34337: Remove jQuery Migrate |
||
541 | * Feature #35259: Output test coverage report to the console |
||
542 | * Feature #35671: Move subtasks section on issues show view into a separate partial |
||
543 | * Patch #15118: Deprecate and rename rss_* methods to atom_* methods |
||
544 | * Patch #31035: Remove redefinition of ActionMailer::LogSubscriber#deliver which is no longer necessary because of the removal of Setting.bcc_recipients |
||
545 | * Patch #32922: Reload detached attachments |
||
546 | * Patch #33079: Remove unused argument from Redmine::Helpers::TimeReport |
||
547 | * Patch #33337: Clean-up workflows controller |
||
548 | * Patch #34976: Add missing fixtures to TimeEntryCustomFieldTest |
||
549 | * Patch #35024: System test fails in Windows due to "/" path separator |
||
550 | * Patch #35026: Remove rake task check_parsing_by_psych |
||
551 | * Patch #35031: Remove deprecated code that are supposed to be removed in Redmine 5 |
||
552 | * Patch #35075: Use named routes in base layout and account sidebar |
||
553 | * Patch #35076: Menu manager - generate correct URLs when rendering from a namespaced controller |
||
554 | * Patch #35208: Use `Time.use_zone` instead of `Time.zone=` |
||
555 | * Patch #35230: Fix typo in ApplicationHelper.html_title comment |
||
556 | * Patch #35396: Use base_scope for issue query results |
||
557 | * Patch #35466: Rename test/fixtures/configuration/*.yml.example to test/fixtures/files/configuration/*.yml |
||
558 | * Patch #35610: Cleanups after Wiki tab removal from project settings (#26579) |
||
559 | * Patch #35727: Add missing fixtures to Redmine::ProjectJumpBoxTest |
||
560 | * Patch #35773: Move sidebar content on versions index view (roadmap) into a separate partial |
||
561 | * Patch #35952: Explicitly specify text formatting in the test suite |
||
562 | * Patch #35975: Add missing fixtures to UserTest |
||
563 | * Patch #36005: Adopt 2FA emails to new Mailer interface |
||
564 | * Patch #36241: MenuManagerTest randomly fails |
||
565 | * Patch #36347: Add missing fixture to IssuesHelperTest |
||
566 | * Patch #36358: Use File.exist? instead of deprecated File.exists? |
||
567 | * Patch #36379: Update copyright year in source files to 2022 |
||
568 | * Patch #36716: IssuesControllerTest randomly fails |
||
569 | * Patch #36730: Replace Member.find_or_new with ActiveRecord's find_or_initialize_by |
||
570 | * Patch #36770: Fix to use a correct exception class ActiveRecord::IrreversibleMigration in migrations |
||
571 | |||
572 | h3. [Custom fields] |
||
573 | |||
574 | * Defect #32977: Remove references to deleted user from "user"-Format CustomFields |
||
575 | * Feature #14275: Add hinting to custom fields |
||
576 | |||
577 | h3. [Database] |
||
578 | |||
579 | * Feature #35073: Escape values in LIKE statements to prevent injection of placeholders (_ or %) |
||
580 | * Patch #36416: Cleanup more dependent objects on project delete |
||
581 | |||
582 | h3. [Documentation] |
||
583 | |||
584 | * Feature #33859: Add a list of supported languages by the code highlighter to the help |
||
585 | * Feature #34978: Add the list of supported browsers to docs and drop support for IE 11 |
||
586 | |||
587 | h3. [Documents] |
||
588 | |||
589 | * Patch #17924: Structured Document list for more flexible UI design with CSS |
||
590 | |||
591 | h3. [Email notifications] |
||
592 | |||
593 | * Defect #32199: Security notification is not sent when an admin changes the password of a user |
||
594 | * Defect #35017: X-Redmine-Issue-Assignee email header field is empty when the assignee of an issue is a group |
||
595 | * Defect #36393: Mailer.with_synched_deliveries doesn't correctly detect other async Queue adapters |
||
596 | * Feature #13919: Mention user on issues and wiki pages using @user with autocomplete |
||
597 | * Feature #30820: Drop setting "Blind carbon copy recipients (bcc)" |
||
598 | |||
599 | h3. [Filters] |
||
600 | |||
601 | * Defect #36389: Filter parameters of Query string do not work when default query is enabled |
||
602 | * Feature #5893: Filter issues by notes |
||
603 | * Feature #34715: Filter issues by file description |
||
604 | * Feature #35764: Multiple search terms in the "contains" operator of text filters |
||
605 | * Patch #35312: Gracefully handle invalid operators and associations requested in queries |
||
606 | |||
607 | h3. [Gantt] |
||
608 | |||
609 | * Defect #33381: Possible double includes in issue query in gantt helper |
||
610 | |||
611 | h3. [Gems support] |
||
612 | |||
613 | * Patch #35000: Update SimpleCov to 0.21 |
||
614 | * Patch #35025: Update capybara to 3.36 |
||
615 | * Patch #35136: Update RuboCop to 1.25 |
||
616 | * Patch #35142: Update RuboCop Performance to 1.13 |
||
617 | * Patch #35207: Update RuboCop Rails to 2.14 |
||
618 | * Patch #35361: Update CSV to 3.2 |
||
619 | * Patch #35691: Update Nokogiri to 1.13 |
||
620 | * Patch #36325: Update Rouge to 3.28 |
||
621 | * Patch #36355: Update roadie-rails to 3.0 |
||
622 | * Patch #36564: Update I18n to 1.10 |
||
623 | |||
624 | h3. [Groups] |
||
625 | |||
626 | * Feature #12795: View group members by non-admin users |
||
627 | |||
628 | h3. [Hook requests] |
||
629 | |||
630 | * Defect #34743: Hooks for queries helper |
||
631 | |||
632 | h3. [I18n] |
||
633 | |||
634 | * Defect #36396: Custom I18n Pluralization rules are not applied correctly |
||
635 | * Feature #36728: Reintroduce lazy loading of i18n files |
||
636 | |||
637 | h3. [Importers] |
||
638 | |||
639 | * Defect #36377: Encoding drop-down in the import settings defaults to US-ASCII instead of general_csv_encoding in Korean, Thai, and Shimplified Chinese |
||
640 | * Feature #34718: Auto guess file encoding when importing CSV file |
||
641 | * Feature #35137: Reject CSV file without data row when importing |
||
642 | * Feature #35365: Allow sending account information when importing users |
||
643 | |||
644 | h3. [Issues] |
||
645 | |||
646 | * Defect #15634: Add watching users to a ticket should switch "watch" link to "unwatch" if own user was added |
||
647 | * Defect #33521: Use issue path instead of bulk update issues path when using the context menu with only one issue selected |
||
648 | * Defect #34641: When editing an issue, the Log time and/or Add notes does not show or hide dynamically |
||
649 | * Feature #4347: Contributing to an issue should automatically add the user to the watchers list |
||
650 | * Feature #6033: Allow addition/removal of subtasks to show in parent's history |
||
651 | * Feature #7360: Issue custom query: default query per instance, project and user |
||
652 | * Feature #13099: Issue Summary: add statistics about issues without assignee, version or category |
||
653 | * Feature #29076: Add button to "Create and follow" when adding a subtask from the parent issue |
||
654 | * Feature #31278: Change Delete button name to Delete issue |
||
655 | * Feature #35559: Query links for related issues on issue page |
||
656 | |||
657 | h3. [Issues list] |
||
658 | |||
659 | * Feature #34932: "Copy link" feature for issues list |
||
660 | |||
661 | h3. [OpenID] |
||
662 | |||
663 | * Feature #35755: Drop OpenID support |
||
664 | |||
665 | h3. [PDF export] |
||
666 | |||
667 | * Feature #35683: PDF rendering improvements when exporting an issue or a list of issues |
||
668 | |||
669 | h3. [Performance] |
||
670 | |||
671 | * Feature #29041: Update session token only once per minute |
||
672 | * Feature #35324: Preload principal and roles in members#index |
||
673 | * Feature #35374: Reduce amount of work on projects show API |
||
674 | * Feature #36294: Lazy load inline images |
||
675 | * Feature #36505: Reduce database queries when rendering Custom fields box in the project settings tab |
||
676 | * Feature #36696: Improve performance of adding or removing members of a group |
||
677 | |||
678 | h3. [Permissions and roles] |
||
679 | |||
680 | * Defect #34029: 403 Forbidden error when non-member try to upload a file |
||
681 | |||
682 | h3. [Plugin API] |
||
683 | |||
684 | * Defect #35455: Require redmine/sort_criteria globally |
||
685 | |||
686 | h3. [Project settings] |
||
687 | |||
688 | * Defect #13199: "Edit" misaligned in project members view |
||
689 | * Defect #36318: Saving time tracking activities without any change may turn a system activity into a project activity |
||
690 | |||
691 | h3. [Projects] |
||
692 | |||
693 | * Feature #35795: Settings for global and user default custom ProjectQuery |
||
694 | |||
695 | h3. [REST API] |
||
696 | |||
697 | * Feature #10171: Updating journal notes via REST API |
||
698 | * Feature #15855: Add information about whether an issue is open or closed to Issues API response |
||
699 | * Feature #24976: Include new statuses allowed by workflow in Issues REST API |
||
700 | * Feature #34766: Better error message when no API format is recognised |
||
701 | * Feature #34857: Add total estimated hours, spent hours, total spent hours for issues to issue list API |
||
702 | * Feature #35420: API to archive/unarchive projects |
||
703 | * Feature #35505: Add enabled core fields to /trackers API response |
||
704 | * Feature #35507: API to close/reopen projects |
||
705 | * Feature #36303: Include avatar URL in Users API |
||
706 | |||
707 | h3. [Rails support] |
||
708 | |||
709 | * Feature #29914: Migrate to Rails 6.1 with Zeitwerk autoloading |
||
710 | * Feature #35030: Allow parallel testing |
||
711 | * Patch #35081: Update config/environments/*.rb for Rails 6.1 |
||
712 | * Patch #36317: Set default protect from forgery true |
||
713 | |||
714 | h3. [Roadmap] |
||
715 | |||
716 | * Feature #6432: Allow unchecking all trackers in Roadmap view sidebar |
||
717 | |||
718 | h3. [Ruby support] |
||
719 | |||
720 | * Feature #31128: Drop Ruby < 2.5 support |
||
721 | * Feature #34992: Ruby 3.0 support |
||
722 | * Feature #36205: Ruby 3.1 support |
||
723 | |||
724 | h3. [SCM] |
||
725 | |||
726 | * Feature #5242: Display source project for cross-project associated revisions for issues |
||
727 | * Feature #16849: Render Textile and Markdown files in the repository browser |
||
728 | |||
729 | h3. [Text formatting] |
||
730 | |||
731 | * Defect #36580: Fix code copying in common browsers |
||
732 | * Feature #20511: Comments for Textile text formatting |
||
733 | * Feature #32424: CommonMark Markdown Text Formatting |
||
734 | * Feature #35677: Preserve leading white space when quoting using the JS toolbar |
||
735 | * Feature #35742: Enable task list items for CommonMark text formatting |
||
736 | * Patch #35104: Code blocks - consistent rendering and retaining user-supplied language name in rendered HTML |
||
737 | |||
738 | h3. [Third-party libraries] |
||
739 | |||
740 | * Feature #36701: Update Chart.js to 3.7.1 |
||
741 | * Patch #35729: Update jQuery to 3.6.0 |
||
742 | |||
743 | h3. [Time tracking] |
||
744 | |||
745 | * Defect #21056: Project specific TimeEntryActivity name not updating properly |
||
746 | |||
747 | h3. [UI] |
||
748 | |||
749 | * Defect #36524: Query Links on Issues and Time Logs Import Sidebars broken |
||
750 | * Feature #34494: Rename the save, edit and delete buttons on the query form to clarify the scope |
||
751 | * Feature #35770: Change "Edit" label in the context menu to "Bulk Edit" when multiple issues are selected |
||
752 | * Patch #30448: Remove wrapper2 and wrapper3 wrapping containers |
||
753 | * Patch #36429: Make issue tabs DOM more consistent |
||
754 | |||
755 | h3. [Wiki] |
||
756 | |||
757 | * Feature #7652: Ability to add watchers to Wiki pages |