• 080-5178-9927
Joomlaトラブル、ホームページ保守と制作Joomlaトラブル、ホームページ保守と制作
  • CMS
  • 特徴
    • 標準機能
    • ブログとの違い
    • CMSならばJoomla
    • Joomlaマニュアル販売
    • Joomla 3.xへのマイグレーション
    • コンテンツマーケティング
    • Site Map
  • 料金
    • 手続き
  • コラム
  • Joomla
    • Joomla最新情報
    • Joomlaリリース情報
    • Joomlaバグ情報
    • Joomlaの使い方
    • Joomla 困った、どうしたら良い
    • Joomlaが初めての方へ
  • 検索
  • Contact
    • Login/Out
  • 質問
    • Q & A
    • Joomlaレンタルサーバー会社
    • Joomlaインストール方法
    現在地:  
  1. Home

♣ Joomlaトラブル解決サービスは、こちら!

♥ Joomlaサイトの保守サービスは、こちら!

♦ 多言語・スマホ対応のJoomlaサイト構築は、こちら!

◊ その他Joomlaに関する相談は、こちら!

お問い合わせフォーム

Joomla最新記事

Joomla 6.1.4 and Joomla 5.4.9. セキュリティーとバグ修正 2026年09月30日
Joomla 6.1.3 & 5.4.8 セキュリティとバグ修正 2026年08月19日
Joomla 6.1.2 & 5.4.7 Security & Bugfix リリース 2026年07月08日
Joomla 6.1.1 & 5.4.6 Security & Bugfix Release 2026年05月27日
Joomla 5.4.5 バグ修正 & 6.1新バージョン 2026年04月15日

Joomlaリリース情報

Joomla 6.1.4 and Joomla 5.4.9. セキュリティーとバグ修正 2026年09月30日
Joomla 6.1.3 & 5.4.8 セキュリティとバグ修正 2026年08月19日
Joomla 6.1.2 & 5.4.7 Security & Bugfix リリース 2026年07月08日
Joomla 6.1.1 & 5.4.6 Security & Bugfix Release 2026年05月27日
Joomla 5.4.5 バグ修正 & 6.1新バージョン 2026年04月15日
Joomla CMSのリリース
閲覧数:44

Joomla 6.1.4 and Joomla 5.4.9. セキュリティーとバグ修正

 Joomla 6.1.4 and Joomla 5.4.9の新しいリリース

joomla 3810

リリース日:2026年9月30日 日本時間

リリース内容:

Security fixes

  • [20260901] - XSS in HTMLHelper::link method
  • [20260902] - Core - Unauthorized user account creation via profile.save controller
  • [20260903] - Core - Improper ACL checks for access level webservice endpoints
  • [20260904] - Core - XSS in the generic media output layouts
  • [20260905] - Core - Arbitrary directory deletion via cache purge action
  • [20260906] - Core - Improper ACL checks in content history comparison view
  • [20260907] - Core - Improper ACL checks in outputs for tagged items
  • [20260908] - Core - XSS in HTML Mail Templates
  • [20260909] - Core -  SSRF vectors in various core extensions
  • [20260910] - Core - Improper ACL checks for workflow stage changes
  • [20260911] - Core - XSS in link toolbar layout
  • [20260912] - Core - XSS in module list
  • [20260913] - Core - Improper ACL checks for varous webservice edit tasks
  • [20260914] - Core - MFA Authentication Bypass through rememberme cookies
  • [20260915] - Core - XSS filter bypass in InputFilter via HTML5 entity decode mismatch
  • [20260916] - Core - XSS filter bypass in InputFilter via whitespace characters in HTML data URIs

Bug fixes and improvements

The following bug fixes are included in Joomla! 6.1.4 and Joomla! 5.4.9 (all 5.4 bug fixes are also up-merged into 6.1):

  • #46860: [5.4] Ensure absolute logo image URLs in Schema.org JSON-LD by @sathwikre
  • #47213: [5.4] Fix null value for date in publish_up by @chmst
  • #47461: [5.4] Fix unset operation on field variable by @ramalama
  • #47495: [5.4] Ensure 'option' and 'title' attributes are respected in alternative layout XML by @Divya3215
  • #47638: [5.4] Fix Tags Menu URL Parameter Issue by @CSGoat0
  • #47935: [5.4] [AI] [com_media] Allow image editor to re-save file back to original non-ASCII filename by @thoni56
  • #47966: [5.4] Show readmore in mod_articles when introtext_limit truncates text by @rish106-hub
  • #48036: [5.4] Fix: Close/Hide dropdown before it is prematurely disabled by @hiteshm0
  • #48047: [5.4] Escape csv formula characters in banner tracks export by @arib06
  • #48056: [5.4] Use hash_equals for totp code verification by @arib06
  • #48120: [5.4] Fix open_basedir restriction error in imagelist custom field by @bhuvan-somisetty
  • #48130: [5.4] Safeguard php_uname function call by @alikon
  • #48144: [5.4] smart search indexer with posgresql by @alikon
  • #48208: [5.4] Fix category associations lost when a translation is unpublished by @krishnagandhicode
  • #48221: [5.4] Prevent duplicate entires in #__ucm_content on every article (contaning tags) save. by @hiteshm0
  • #48233: [5.4] Backport of security flag for updates by @laoneo
  • #48234: [5.4] Make filter button visible in articles category list by @drmenzelit
  • #48238: [5.4] [AI] Fix invalid jobLocationType values in JobPosting schema output by @Otto-Deviant1904
  • #48248: [5.4] Fix Tags alias uniqueness bug by @hiteshm0
  • #48252: [6.1] Add language retrieval in edit_container.php by @brianteeman
  • #48274: [5.4] Fix errors in Template Manager by @joomdonation
  • #48280: [5.4] Fix warning when access none source files in Template Manager by @joomdonation
  • #48286: [5.4] Calendar Keyboard navigation [a11y] by @brianteeman
  • #48304: [6.1] Remove csrf token check from POWcaptcha by @HLeithner
  • #48320: [5.4] Prevent duplicate item selection causing 404 delete errors in media manager by @hiteshm0
  • #48327: [5.4] Template Override Count - fix by @brianteeman
  • #48328: [5.4] Fix duplicate options in fields by @chmst
  • #48339: [6.1] fix category list filter by month error by @heelc29
  • #48347: [5.4] Cast preg_match result to boolean in isImage method by @Bakual
  • #48362: [5.4] Fix fulltext caption in the legacy newsflash module by @chmst
  • #48368: [6.1] InstallerScriptTrait::allowDowngrades not working by @n3t
  • #48386: [5.4] Fix archive extract error in template manager by @joomdonation
  • #48434: [5.4] [AI] Fix untranslated buttons in the TinyMCE builder by @tecpromotion
  • #48450: [5.4] Fix errors in ComponentlayoutField by @joomdonation
  • #48468: [5.4] Fix clearing the workflows context selector - redo of #48079 for 5.4 by @richard67

The full list of Pull Requests for Joomla! 6.1.4 on GitHub is available here:

https://github.com/joomla/joomla-cms/milestone/168?closed=1

The full list of Pull Requests for Joomla! 5.4.9 on GitHub is available here: https://github.com/joomla/joomla-cms/milestone/167?closed=1

ダウンロード先:

既存Joomlaユーザーの方 

サイト管理画面にログインしてJoomlaシステムの更新アイコンをクリックしてシステムの更新をして下さい。

システムの更新をする前に、必ず、現在のシステムのバックアップ(DBを含む)をして下さい。 

新規ユーザーの方

Joomlaじゃぱん(http://www.joomla.jp)で日本語版パッケージがダウンロードできるようになりましたら、そちらから最新システムをダウンロードして下さい。

英語版のダンロード先は、こちらです。

 

続きを読む...

Joomla CMSのリリース
閲覧数:188

Joomla 6.1.3 & 5.4.8 セキュリティとバグ修正

Joomla 6.1.3 & 5.4.8の新しいリリース

リリース日:2026年8月19日 日本時間

リリース内容: セキュリティ&バグ修正

Security fixes

  • [20260801] - Core - Response header injection in download views
  • [20260802] - Core - Improper CORS origin validation
  • [20260803] - Core - Inconsistent ACL checks for mutating webservice endpoints
  • [20260804] - Core - Improper ACL checks for custom fields webservice endpoints
  • [20260805] - Core - Improper ACL checks for category webservice endpoints
  • [20260806] - Core - XSS through schema.org outputs
  • [20260807] - Core - MFA Authentication Bypass
  • [20260808] - Core - Improper ACL checks for batch copy actions
  • [20260809] - Core - Improper ACL checks when injection schema.org contact data
  • [20260810] - Core - Unrestricted uploads of SHTML files

Bug fixes and improvements

The following bug fixes are included in Joomla! 6.1.3 and Joomla! 5.4.8 (all 5.4 bug fixes are also up-merged into 6.1):

  • #46805: [5.4] check ACL when display link to user edit form by @heelc29
  • #47202: [5.4] Editing menu item redirects to list view with original filters by @hiteshm0
  • #47626: [5.4] Implement date and time validation on input change (and more) by @cyrez
  • #47766: [5.4] Better error messages on updateserver errors by @TLWebdesign
  • #47780: [5.4] Fix: Change data-nested='true' for nested components (Categories, Menu Items, Modules) by @RiteshGite
  • #47886: [5.4] [AI] Fix Global Check-in treating checked_out=0 rows as needing check-in by @genr8r
  • #48060: [5.4] Fix article options ignored on article view by @joomdonation
  • #48074: [5.4] Prevent DivisionByZeroError in ListModel when list.limit is 0 by @Denitz
  • #48080: [5.4] Update joomla/filesystem from 3.2.0 to 3.3.0 and partly backport PR 48038 from 6.1-dev by @richard67
  • #48081: [6.1] Remove tinymce Bosnian language files from deleted files list in script.php by @richard6
  • #48088: [5.4] fix duplicate no results message in installed languages by @adarshdubey03
  • #48091: [5.4][plg_actionlog] log user block/unblock only 1 by @alikon
  • #48116: [5.4] Clean up filepatcher remainders from 5.4.7 hotfix on core update by @richard67
  • #48163: [5.4] fix division by zero in subforms by @chmst
  • #48171: [5.4] Add path traversal checks in com_templates by @SniperSister
  • #48173: [5.4] Smart Search: Standardize memory_table_limit by @Hackwar
  • #48184: [5.4] awesomplete example typo by @brianteeman
  • #48185: [5.4] Backport Fix treeselect indentation- #48125 by @brianteeman
  • #48212: [5.4] Fix days_of_week normalization (shorter version) by @tecpromotion
  • #48216: [5.4] site offline by @brianteeman

The full list of Pull Requests for Joomla! 6.1.3 on GitHub is available here:

https://github.com/joomla/joomla-cms/milestone/166?closed=1

The full list of Pull Requests for Joomla! 5.4.8 on GitHub is available here: https://github.com/joomla/joomla-cms/milestone/165?closed=1

ダウンロード先:

既存Joomlaユーザーの方 

サイト管理画面にログインしてJoomlaシステムの更新アイコンをクリックしてシステムの更新をして下さい。

システムの更新をする前に、必ず、現在のシステムのバックアップ(DBを含む)をして下さい。 

新規ユーザーの方

Joomlaじゃぱん(http://www.joomla.jp)で日本語版パッケージがダウンロードできるようになりましたら、そちらから最新システムをダウンロードして下さい。

英語版のダンロード先は、こちらです。

 

続きを読む...

Joomla CMSのリリース
閲覧数:245

Joomla 6.1.2 & 5.4.7 Security & Bugfix リリース

Joomla x.xの新しいリリース

リリース日:2026年7月8日 日本時間

リリース内容:セキュリティアップデートとバグ修正

Security fixes

  • [20260701] - Core - Incorrect Access Control in com_media webservice endpoints
  • [20260702] - Core - Incorrect Access Control in com_contact vcf download
  • [20260703] - Core - XSS in MFA method management
  • [20260704] - Core - XSS in com_templates
  • [20260705] - Core - XSS in various modalreturn layouts
  • [20260706] - Core - XSS in com_installer
  • [20260707] - Core - XSS in the generic image output layout
  • [20260708] - Core - XSS through language overrides
  • [20260709] - Core - Incorrect Access Control in com_workflow
  • [20260710] - Core - Incorrect Access Control in com_modules
  • [20260711] - Core - Incorrect Access Control in com_privacy webservice endpoints
  • [20260712] - Core - Incorrect Access Control in com_fields webservice endpoints

Bug fixes and improvements

The following bug fixes are included in Joomla! 6.1.2 and Joomla! 5.4.7 (all 5.4 bug fixes are also up-merged into 6.1):

  • #44914: [5.4] contact serializer and newsfeed serializer by @sinahaghparast
  • #47203: [5.4] allow extension update from cli by @alikon
  • #47483: [5.4] Fix aria-expanded check by @janschoenherr
  • #47548: [5.4] fix CodeMirror editor duplication by @adarshdubey03
  • #47603: [5.4] Load the mail template from the language of the mail template by @laoneo
  • #47637: [5.4] Compile the manifest path from extension root by @laoneo
  • #47734: [5.4] Do not go to database setup in installer when password has spaces at beginning/end by @laoneo
  • #47748: [5.4] [webservices] Create a user access level via POST by @alikon
  • #47751: [5.4] [webservices] PATCH user access level without rules by @alikon
  • #47752: [5.4] Fix Author Display Issue Using Article Setting by @CSGoat0
  • #47774: [5.4] Activate filters in frontend only with filter-button by @chmst
  • #47791: [6.1] Update docs about branches after 6.1.0 stable by @heelc29
  • #47792: [6.1] README delete heavy development note by @heelc29
  • #47800: [5.4] Preserve zero select option text by @janschoenherr
  • #47804: [6.1] [AI] Fix Accessiblemedia subform values for non-image media types by @tecpromotion
  • #47819: [5.4] POST com_contact form with webservices and custom reply enabled by @alikon
  • #47831: [6.1] Remove obsolete exclusion for tinymce/langs from typos.toml by @richard67
  • #47852: [5.4] Regression fix for security fix in 5.4.6 and 6.1.1 by @HLeithner
  • #47855: [5.4] Fix Modal Pagination Breaks Navigation by @CSGoat0
  • #47865: [5.4] Joomla Alert Success by @brianteeman
  • #47869: [5.4] add email sending test for contact form by @alikon
  • #47882: [5.4] Cache fido metadata in build directory and preserve on build by @HLeithner
  • #47896: [5.4] Reorder and update Text::script() calls for media field labels by @brianteeman
  • #47916: [5.4] [AI] Fix the Indexer Debugger constructor and show error passing no or invalid id by @MacJoom
  • #47917: [5.4] Reorder and update Text::script() calls for joomlaupdate by @brianteeman
  • #47920: [6.1] Disable flaky view transitions in system tests by @laoneo
  • #47931: [5.4] Fix doc block for input type by @laoneo
  • #47951: [5.4] Use item->locked instead of item->last_execution in "Running Since" tooltip on Scheduled Tasks page by @hiteshm0
  • #47964: [5.4] Always use a new installer instance on discover install by @laoneo
  • #47972: [5.4] Use the correct function to get the message from an exception by @laoneo
  • #47978: [5.4] Fix potential issue with update multiple extensions by @joomdonation
  • #47985: [5.4] Cookie authentication: load language file so log message is translated by @tecpromotion
  • #47986: [5.4] Cookie authentication: fix username placeholder in failed-login log message by @tecpromotion
  • #47993: [5.4] com_users unable to filter by unactivated users state by @alikon
  • #47996: [6.1] [AI] Make CSS url() versioning resilient to unparseable vendor CSS by @tecpromotion
  • #48038: [6.1] [AI] Fix extension/update upload failing after joomla/filesystem 4.2.0 by @tecpromotion

The full list of Pull Requests for Joomla! 6.1.2 on GitHub is available here: https://github.com/joomla/joomla-cms/milestone/164?closed=1

The full list of Pull Requests for Joomla! 5.4.7 on GitHub is available here: https://github.com/joomla/joomla-cms/milestone/161?closed=1

 

ダウンロード先:

既存Joomlaユーザーの方 

サイト管理画面にログインしてJoomlaシステムの更新アイコンをクリックしてシステムの更新をして下さい。

システムの更新をする前に、必ず、現在のシステムのバックアップ(DBを含む)をして下さい。 

新規ユーザーの方

Joomlaじゃぱん(http://www.joomla.jp)で日本語版パッケージがダウンロードできるようになりましたら、そちらから最新システムをダウンロードして下さい。

英語版のダンロード先は、こちらです。

 

続きを読む...

1 / 26

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 古い記事へ
  • 最後へ
    現在地:  
  1. Home

About Us

Goyat LLC代表

会社概要

お問合せ

サイトマップ

免責

プライバシーポリシー

リンクは商用、非商用問わず自由です

Contact us

logo

電話 080-5178-9927   
(お客様専用)
担当: 吉田  お問合せフォーム

サービス内容

新規CMSサイト構築

Joomlaイントラネット

Joomlaシステム保守

Joomlaトラブルシュート

Joomla操作トレーニング

Joomlaインストール

Joomlaサイト運営代行

Joomla多言語対応
Joomlaコンサルティング

Joomlaマニュアル販売

 

Old & Gray(老いていく貴方へ!)
定年退職後の生き方
シニアの生き方

© 2016 Goyat. All Rights Reserved.

Log-In/Out

  • ユーザ名を忘れましたか?
  • パスワードを忘れましたか?