drupal 7.22
| Download | Size | md5 hash |
|---|---|---|
| drupal-7.22.tar.gz | 3.04 MB | 068d7a77958fce6bb002659aa7ccaeb7 |
| drupal-7.22.zip | 3.47 MB | cc252b9ad65d4c639a7ff83978771749 |
Release notes
Maintenance release of the Drupal 7 series. Includes bugfixes and small API/feature improvements only (no major new functionality); significant new features are only being added to the forthcoming Drupal 8.0 release.
No security fixes are included in this release.
Besides documentation fixes, no changes have been made to the robots.txt or default settings.php files in this release, so upgrading custom versions of those files is not necessary. There are two changes to the .htaccess file in this release:
- An improvement to the default rewrite rules to help avoid man-in-the-middle attacks on sites which are accessed over HTTP and HTTPS (see #1733476).
- A change to the list of file extensions which are blocked by .htaccess, to prevent temporary files created by text editors from being accessed (see #1907704). Note: This change may cause issues for sites running very old versions of the Apache web server (1.x); see the "Known issues" section below.
Upgrading custom versions of the .htaccess file is recommended.
Known issues:
Read moredrupal 7.21
| Download | Size | md5 hash |
|---|---|---|
| drupal-7.21.tar.gz | 3.02 MB | eff054cd53be39ff719f77c81dce1aac |
| drupal-7.21.zip | 3.44 MB | fed71fcb14e89b16bd2f888aa10cd427 |
Release notes
Maintenance release of the Drupal 7 series. Includes fixes for incompatibilities introduced in the Drupal 7.20 security release only.
No security fixes are included in this release; however, sites which were unable to upgrade to Drupal 7.20 (or upgraded but made modifications to disable the security fixes included within it) should upgrade to Drupal 7.21 to obtain additional security protection.
No changes have been made to the .htaccess, robots.txt or settings.php files in this release, so upgrading custom versions of those files is not necessary.
If you have already upgraded to Drupal 7.20 with no problems this release does not provide any new functionality. You can upgrade to Drupal 7.21 at your leisure, without reading the notes below.
Important update notes:
Drupal 7.20 fixed a fundamental security flaw in the Drupal core Image module and therefore introduced incompatibilities with a number of contributed modules and sites (see the Drupal 7.20 release notes). To help mitigate the effect of these changes, an optional 'image_allow_insecure_derivatives' variable was provided, which sites could use to turn off the security fix.
Read moredrupal 7.20
| Download | Size | md5 hash |
|---|---|---|
| drupal-7.20.tar.gz | 3.02 MB | ee576d63f1fd8a1f1c072a56978da0c5 |
| drupal-7.20.zip | 3.44 MB | b92096e07122612c76d0f9121167646b |
Release notes
Maintenance and security release of the Drupal 7 series.
This release fixes security vulnerabilities. Sites are urged to upgrade immediately after reading the security announcement:
No other fixes are included.
No changes have been made to the .htaccess, robots.txt or settings.php files in this release, so upgrading custom versions of those files is not necessary.
Important update notes (and known issues):
If you encountered difficulties upgrading to Drupal 7.20 as described below, try upgrading to Drupal 7.21 and following the instructions there.
The security fixes in this release change all image derivative URLs generated by Drupal to append a token as a query string. ("Image derivatives" are copies of images which the Drupal Image module automatically creates based on configured image styles; for example, thumbnail, medium, large, etc.)
Read moredrupal 7.19
| Download | Size | md5 hash |
|---|---|---|
| drupal-7.19.tar.gz | 3.02 MB | c1dd3960f1555df208c80ef612e0c53a |
| drupal-7.19.zip | 3.44 MB | cc8a56254b57ccf69e285720bfe9aa7f |
Release notes
Maintenance and security release of the Drupal 7 series.
This release fixes security vulnerabilities. Sites are urged to upgrade immediately after reading the security announcement:
No other fixes are included.
No changes have been made to the .htaccess, robots.txt or settings.php files in this release, so upgrading custom versions of those files is not necessary.
drupal 6.28
| Download | Size | md5 hash |
|---|---|---|
| drupal-6.28.tar.gz | 1.05 MB | 9725ee7fddf9fcc2b70e782bfa6e84f4 |
| drupal-6.28.zip | 1.22 MB | c4cc6fbea762e4f4ff1c58fe9d4bd840 |
Release notes
Maintenance and security release of the Drupal 6 series.
This release fixes security vulnerabilities. Sites are urged to upgrade immediately after reading the security announcement:
No other fixes are included.
No changes have been made to the .htaccess, robots.txt or settings.php files in this release, so upgrading custom versions of those files is not necessary.
drupal 7.18
| Download | Size | md5 hash |
|---|---|---|
| drupal-7.18.tar.gz | 3.02 MB | 5c048f60a53acd7cb3c2b6d5fe42f082 |
| drupal-7.18.zip | 3.44 MB | 14b458a4aafc037eab7a0cc95f5150ef |
Release notes
Maintenance and security release of the Drupal 7 series.
This release fixes security vulnerabilities. Sites are urged to upgrade immediately after reading the security announcement:
No other fixes are included.
No changes have been made to the .htaccess, robots.txt or settings.php files in this release, so upgrading custom versions of those files is not necessary.
drupal 6.27
| Download | Size | md5 hash |
|---|---|---|
| drupal-6.27.tar.gz | 1.05 MB | c9940c480b3b38e9ffa82e066856d54c |
| drupal-6.27.zip | 1.22 MB | 403bb9e7304793ab0acb63d2f58d3df1 |
Release notes
Maintenance and security release of the Drupal 6 series.
This release fixes security vulnerabilities. Sites are urged to upgrade immediately after reading the security announcement:
No other fixes are included.
No changes have been made to the .htaccess, robots.txt or settings.php files in this release, so upgrading custom versions of those files is not necessary.
drupal 9.x-dev
| Download | Size | md5 hash |
|---|---|---|
| drupal-9.x-dev.tar.gz | 4.96 MB | 3623412daa1ab6b0fbd57eaf43602335 |
| drupal-9.x-dev.zip | 7.72 MB | 719d90ac9cfa63da8c9da4deecaa5fc4 |
Release notes
Placeholder for the Drupal 9.x release. Not intended for actual use by anyone except the issue queue version selector.
drupal 7.17
| Download | Size | md5 hash |
|---|---|---|
| drupal-7.17.tar.gz | 3.02 MB | 439e8ca7e6a33bb879a4624d8f01bed0 |
| drupal-7.17.zip | 3.44 MB | 4a8c001d0cf87795cebf38bd73f10781 |
Release notes
Maintenance release of the Drupal 7 series. Includes bugfixes and small API/feature improvements only (no major new functionality); significant new features are only being added to the forthcoming Drupal 8.0 release.
No security fixes are included in this release.
No changes have been made to the .htaccess or robots.txt files in this release, so upgrading custom versions of those files is not necessary. Changes to the default settings.php file in this release include documentation fixes, additional (optional) configuration settings, and a new default value of the '404_fast_html' configuration setting. Upgrading custom versions of this file is not necessary, but may be useful if you want to take advantage of the new configuration settings.
Note that Drupal 7.17 makes a change to the Update Manager module to allow Drupal.org to collect usage statistics for individual modules and themes, rather than only for entire projects. The usage statistics will remain anonymous. (For more information on how usage statistics are collected from your site, see the online handbook entry for the Update Manager module.)
Known issues:
Read moredrupal 7.16
| Download | Size | md5 hash |
|---|---|---|
| drupal-7.16.tar.gz | 3 MB | 352497b2df94b5308e31cb8da020b631 |
| drupal-7.16.zip | 3.42 MB | 5582dd6dc1d0abeca1904bc453fbc25c |
Release notes
Maintenance and security release of the Drupal 7 series.
This release fixes security vulnerabilities. Sites are urged to upgrade immediately after reading the security announcement:
No other fixes are included.
No changes have been made to the .htaccess, robots.txt or settings.php files in this release, so upgrading custom versions of those files is not necessary.
Update notes:
As a consequence of the security fixes in this release, sites using the OpenID module will reject login attempts from OpenID servers which return an XRDS file with a declared DOCTYPE (due to the possibility of malicious DOCTYPE declarations).
A DOCTYPE declaration is not part of the OpenID specification, so this is not expected to cause any problems for valid OpenID servers. However, sites using unusual or custom OpenID servers may wish to test OpenID logins before deploying this release.
drupal 7.15
| Download | Size | md5 hash |
|---|---|---|
| drupal-7.15.tar.gz | 3 MB | f42c9baccd74e1d035d61ff537ae21b4 |
| drupal-7.15.zip | 3.42 MB | de63a743a2ea262f5110ef5a27d360f9 |
Release notes
Maintenance release of the Drupal 7 series. Includes bugfixes and small API/feature improvements only (no major new functionality); significant new features are only being added to the forthcoming Drupal 8.0 release.
No security fixes are included in this release.
Besides documentation fixes, no changes have been made to the .htaccess, robots.txt or settings.php files in this release, so upgrading custom versions of those files is not necessary.
Known issues:
- [#1708722]: Call to undefined function drupal_find_base_themes() in drupal-7.15/includes/module.inc on line 184:
Under rare circumstances, upgrading to Drupal 7.15 may cause sites to experience a fatal error. This occurs for sites which have sub-themes in their filesystem and modules installed that perform unusual actions early in Drupal's bootstrap process (example: the Environment module). The Registry Rebuild script is also affected, although the latest development version is not. The root cause of the bug has been fixed in the 7.x-dev version of Drupal core, and a patch for Drupal 7.15 is available in the above-mentioned issue.
Major changes since 7.14:
drupal 7.14
| Download | Size | md5 hash |
|---|---|---|
| drupal-7.14.tar.gz | 2.98 MB | af7abd95c03ecad4e1567ed94a438334 |
| drupal-7.14.zip | 3.4 MB | d4cbfd90951a6b37f15b8b5b5c9b3ed1 |
Release notes
Maintenance release of the Drupal 7 series. Includes bugfixes only (no new functionality), plus the security fixes from Drupal 7.13 which was released alongside Drupal 7.14.
Major changes since 7.13:
- Fixed "integrity constraint" fatal errors when rebuilding registry.
- Fixed custom logo and favicon functionality referencing incorrect paths.
- Fixed DB Case Sensitivity: Allow BINARY attribute in MySQL.
- Split field_bundle_settings out per bundle.
- Improve UX for machine names for fields (UI change).
- Fixed User pictures are not removed properly.
- Fixed HTTPS sessions not working in all cases.
- Fixed Regression: Required radios throw illegal choice error when none selected.
- Fixed allow autocompletion requests to include slashes.
- Eliminate $user->cache and {session}.cache in favor of $_SESSION['cache_expiration'][$bin] (Performance).
- Fixed focus jumps to tab when pressing enter on a form element within tab.
- Fixed race condition in locale() - duplicates in {locales_source}.
- Fixed Missing "Default image" per field instance.
- Quit clobbering people's work when they click the filter tips link
- Form API #states: Fix conditionals to allow OR and XOR constructions.
- Fixed Focus jumps to tab when pressing enter on a form element within tab. (Accessibility)
- Improved performance of node_access queries.
drupal 7.13
| Download | Size | md5 hash |
|---|---|---|
| drupal-7.13.tar.gz | 2.95 MB | 80587b66375c7fc539414a20a2c6f2de |
| drupal-7.13.zip | 3.36 MB | 0bcd7cd938191519a0358ee155e3da4c |
Release notes
Maintenance and security release of the Drupal 7 series. Only fixes for security vulnerabilities have been committed. New features are only being added to the forthcoming Drupal 8.0 release.
This release fixes security vulnerabilities. Sites are urged to upgrade immediately after reading the security announcement:
No other fixes are included. For additional bugfixes, see Drupal 7.14 released alongside Drupal 7.13.
drupal 6.26
| Download | Size | md5 hash |
|---|---|---|
| drupal-6.26.tar.gz | 1.05 MB | 738dabb1e52de618db31698c625221b1 |
| drupal-6.26.zip | 1.22 MB | d0c2faaccce51448d1dc6b3e1041ef1e |
Release notes
The twentysixth maintenance release of the Drupal 6 series. Only bugfixes have been committed. No security fixes are included in this release. New features are only being added to the forthcoming Drupal 8.0 release.
Drupal 6.26 builds on top of Drupal 6.25 and includes all the previous bugfixes and security improvements. The complete list of changes committed since Drupal 6.25 are as follows:
- #1145700 by jbrown, mr.baileys, joachim: harden link display on dblogoverview screen in case the link might be dependent on user input with any contrib module
- #183435 by TR, gregmac: make drupal_http_request() more tolerant of faulty newlines in the response headers
- #341588 by voxpelli, mikl, Albert Volkman, dawehner: use the right JSON MIME type in drupal_json()
- #1352272 by Albert Volkman, sven.lauer, LSU_JBob: fix phpdoc for system_settings_overview()
- #260934 by catch, ShawnClark, Jody Lynn, Island Usurper, joshmiller, anrikun, roychri, pdrake, Dave Cohen, sun, plach, bjaspan: When drupal_execute()ing multiple forms with same form_id in a page request, only the first one was validated.
- #784864 by Niklas Fiekas, kbgordon7, rdrh555, lisarex: Link in update.php instructions was pointing to an outdated handbook page. Update it.
- #655048 by Gábor Hojtsy, gumanist, intuited, Albert Volkman: Plural formula information was blanked when importing a poorly-formed .po file.
- #751578 by xamanu, sanduhrs, Gábor Hojtsy: OpenID realm should not be language dependent.
- #800968 by JacobSingh, ksenzee, Big Z: Tabledrag.js should not use for...in to iterate over an array.
- #1446372 by Heine, bserem, champlin: Invalid Unicode code range in PREG_CLASS_UNICODE_WORD_BOUNDARY fails with PCRE 8.30.
- #736556 by Albert Volkman, daniels220, jeckman: Improve theme_links() documentation.
- #300279 by achton, pillarsdotnet, unknownguy: Improve db_query_temporary() documentation to apply even if persistent database connections are used.
- #1441852 by chris.leversuch, cafuego: Better return value documentation for db_query().
- #1436074 by Pat Redmond, tstoeckler, fureigh: Minor documentation fix in the batch_set() docs.
- #1432708 by scorchio, mkalkbrenner: Expand drupal_goto() documentation for query argument.
- #1416212 by pontus_nilsson, ibot: Documentation cleanup for _user_mail_notify().
- #1421330 by Albert Volkman, heyrocker: Crosslink cache_set() and cache_get() documentation with @see.
drupal 6.25
| Download | Size | md5 hash |
|---|---|---|
| drupal-6.25.tar.gz | 1.05 MB | 5a6862a944c956493fa52acdaf0621b9 |
| drupal-6.25.zip | 1.22 MB | fa5292c62ab896eacc48fdbdc7f86374 |
Release notes
The twentyfifth maintenance release of the Drupal 6 series. Only bugfixes have been committed. No security fixes are included in this release. New features are only being added to the forthcoming Drupal 8.0 release.
Drupal 6.25 builds on top of Drupal 6.24 and includes all the previous bugfixes and security improvements The complete list of changes committed since Drupal 6.24 are as follows:
- Rollback for issue #12274 given that it does not consider email domain names with hyphens valid after the first component of the domain name.
- #1425868 by ELC, lort, greg.harvey, David_Rothstein: Fixed duplicate entry of theme primary key in system table on Drupal 6.24 when updating using drush.
- #1425260 by mgifford: Fixed 'Call to undefined function locale_inc_callback()' during 6.22 -> 6.24 upgrade if locale module was previously enabled but is not currently enabled.
drupal 7.12
| Download | Size | md5 hash |
|---|---|---|
| drupal-7.12.tar.gz | 2.95 MB | db2284beb97241c9bdca9c638cd8a4f1 |
| drupal-7.12.zip | 3.36 MB | 257a77dc373827e8de25d23f23af54bd |
Release notes
Maintenance release of the Drupal 7 series. Includes bugfixes only (no new functionality), plus the security fixes from Drupal 7.11 which was released alongside Drupal 7.12.
All changes committed since Drupal 7.10 are as follows:
- #336483 by brianV, catch: Fixed Performance: SELECT MAX(comment_count()) FROM node_comment_statistics() does full table scan.
- #289504 by catch, mikeryan, moshe weitzman: Fixed user_delete() performance: index comment uid columns.
- #1326482 by ryanissamson: Clean up minor code style issues in archiver.inc.
- #996236 by fago, sun, pillarsdotnet, xjm: Fixed drupal_flush_all_caches() does not clear entity info cache.
- Rollback of Issue #1280792 by andypost: Key length too long error.
- #569076 by rocket_nova, wamilton, alonpeer: Test that taxonomy term page contains a link to parent terms in the breadcrumbs.
- #1367000 by chris.leversuch, oriol_e9g, David_Rothstein: Clean up API docs for php module.
- #1421330 by heyrocker: Fixed Add @see for cache_set() and cache_get() .
drupal 7.11
| Download | Size | md5 hash |
|---|---|---|
| drupal-7.11.tar.gz | 2.66 MB | e9857e1749762367d7631d74cc6564a7 |
| drupal-7.11.zip | 3.08 MB | 687258ef31de9f5827779c33e594c25f |
Release notes
Maintenance and security release of the Drupal 7 series. Only fixes for security vulnerabilities have been committed. New features are only being added to the forthcoming Drupal 8.0 release.
This release fixes security vulnerabilities. Sites are urged to upgrade immediately after reading the security announcement:
No other fixes are included. For additional bugfixes, see Drupal 7.12 released alongside Drupal 7.11.
drupal 6.24
| Download | Size | md5 hash |
|---|---|---|
| drupal-6.24.tar.gz | 1.05 MB | a37c6f22b624159fa5e4bc6896cdcf15 |
| drupal-6.24.zip | 1.22 MB | fd91a08fa7eee70232812910d38b06dd |
Release notes
The twentyfourth maintenance release of the Drupal 6 series. Only bugfixes have been committed. No security fixes are included in this release. New features are only being added to the forthcoming Drupal 8.0 release.
This release includes the security fixes from Drupal 6.23 which was released alongside Drupal 6.24. No additional security fixes are included.
The complete list of changes committed since Drupal 6.22 are as follows:
- #879270 by Ben Coleman: query in taxonomy_node_get_terms() needs the v.weight field added to the SELECT because it was already present in the ORDER BY; improved PostgreSQL compatibility
- #12274 by markoshust, DamienMcKenna, seanbfuller, cburschka, aufumy: do not accept email addresses with dots at the end as valid
- #600836 by tim.cosgrove, dww, naxoc, Dave Reid: prevent batches from going indefinitely if their 'finished' value becomes bigger than 1
- #289504 by mikeryan, catch, moshe weitzman: backport indexes from Drupal 7 on comments and node_comment_statistics to improve performance of mass-user operations such as deleting users en masse
drupal 6.23
| Download | Size | md5 hash |
|---|---|---|
| drupal-6.23.tar.gz | 1.05 MB | e3e752702d466a1babcb2a827d272424 |
| drupal-6.23.zip | 1.21 MB | 1d42f25d8336c4afc4f297ef828ddff6 |
Release notes
The twentythird maintenance and security release of the Drupal 6 series. Only fixes for security vulnerabilities have been committed. New features are only being added to the forthcoming Drupal 8.0 release.
This release fixes security vulnerabilities. Sites are urged to upgrade immediately after reading the security announcement:
No other fixes are included. For additional bugfixes, see Drupal 6.24 released alongside Drupal 6.23.
drupal 7.10
| Download | Size | md5 hash |
|---|---|---|
| drupal-7.10.tar.gz | 2.93 MB | 1caafb849bc756e62dd874b90b95ab31 |
| drupal-7.10.zip | 3.34 MB | 1e11489c780f25672d2a57490b0dae5c |
Release notes
Highlights
- Fixed Content-Language HTTP header to not cause issues with Drush 5.x.
- Reduce memory usage of theme registry (performance).
- Fixed PECL upload progress bar for FileField
- Fixed running update.php doesn't always clear the cache.
- Fixed PDO exceptions on long titles.
- Fixed Overlay redirect does not include query string.
- Fixed D6 modules satisfy D7 module dependencies.
- Fixed the ordering of module hooks when using module_implements_alter().
- Fixed "floating" submit buttons during AJAX requests.
- Fixed timezone selected on install not propogating to admin account.
- Added msgctx context to JS translation functions, for feature parity with t().
- Profiles' .install files now available during hook_install_tasks().
- Added test coverage of 7.0 -> 7.x upgrade path.
- Numerous notice fixes.
- Numerous documentation improvements.
- Additional automated test coverage.
Update notes
- None at this time.
Known issues
- None at this time.
Full list of changes since 7.9:
- #1318316 by xjm: AssertTaxonomyPage is missing documentation.