Composr Issue Tracker
Welcome to the issue tracker! Here, you can view reported software issues.All users are encouraged to report software issues or suggestions to the tracker. You will be awarded points for each issue you report that gets completed by someone.
Developers are encouraged to go through the tracker and implement issues. You will receive points for issues you implement. Prioritise issues in the following order:
- Security issues
- Major issues
- Minor issues
- Trivial issues
- Feature requests
- Be aware this requires you create a measure for voting, and you achieve a simple majority, before implementing into core code. This is not necessary for non-bundled addons.
Please read our providing feedback tutorial page before reporting an issue.
Click here to view the full issue tracker catalogue.
Click here to report an issue or suggestion.
Search tracker issues
Open issues
| Identifier | Issue type | Title | Status | Funded? | |
|---|---|---|---|---|---|
| #6148 | Feature request or suggestion | Replace CKEditor with a different WYSIWYG editor | Open | No | View |
| #6147 | Trivial issue (does not break functionality) | Event view screen escapes all Comcode / HTML on the description | Open | No | View |
| #6146 | Feature request or suggestion | Change detection might not account background tab throttling | Open | No | View |
| #6145 | Feature request or suggestion | Rename formal warnings to something more concise | Open | No | View |
| #6144 | Feature request or suggestion | Re-brand Composr CMS and several of its sub-systems | Open | No | View |
| #6142 | Feature request or suggestion | Allow automated scanning of rootkits | Open | No | View |
| #6141 | Trivial issue (does not break functionality) | Revisions not quite disabled | Open | No | View |
| #6140 | Feature request or suggestion | Nix the 'Delete own member account' privilege | Open | No | View |
| #6139 | Trivial issue (does not break functionality) | Tooltips do not work on mobile | Open | No | View |
| #6138 | Feature request or suggestion | How to join translator TEAM | Open | No | View |
Completed issues
| Identifier | Issue type | Title | Status | Funded? | |
|---|---|---|---|---|---|
| #3876 | Security issue (exploit in Composr) | XSS vulnerability via mime sniffing on .dat files | Completed | No | View |
| #3887 | Security issue (exploit in Composr) | Information leak on IIS | Completed | No | View |
| #4008 | Security issue (exploit in Composr) | Backups should be given reduced privileges | Completed | No | View |
| #4076 | Security issue (exploit in Composr) | Security error in parameterised queries | Completed | No | View |
| #4095 | Security issue (exploit in Composr) | Composr CMS 10.0.30 - (Authenticated) Cross-Site Scripting | Completed | No | View |
| #4101 | Security issue (exploit in Composr) | Incorrect escaping of field labels (esp usergroup names) | Completed | No | View |
| #4157 | Security issue (exploit in Composr) | XSS if showing topics via main_multi_content block | Completed | No | View |
| #4202 | Security issue (exploit in Composr) | XSS hole in non-bundled image_slider addon | Completed | No | View |
| #4391 | Security issue (exploit in Composr) | main_multi_content block not respecting validation | Completed | No | View |
| #4632 | Security issue (exploit in Composr) | Image Filter Bypass Leads Remote Code Execution [Mass-add to gallery] | Completed | No | View |
