This week we have releases of both the 1.0 and 1.1 versions of Totara, which both include one security fix.
Here's the 1.0.36 changelog:
Release 1.0.36 (2 May 2012):
==================================================
Security fixes:
T-9666 XSS vulnerability in forum posts for IE users Updated to clean via Javascript too
Improvements:
T-8485 Additions to Chinese, Dutch, Finnish, Hebrew and Hungarian language packs
Bug fixes:
T-9511 Manually chosen course backup file names now go through clean_filename() This means filenames with spaces now work
T-9612 Fix bug in Reportbuilder to allow users to view hidden reports
T-9599 Update Calendar bugfix in v1.0.32 to use Moodle upstream version
MDL-32388 Fix SCORM pop-ups when using Google Chrome
T-9692 Bug in sort order calculation for new hierarchy items
And here's the 1.1.15 changelog:
Release 1.1.15 (2 May 2012):
==================================================
Security fixes:
T-9666 XSS vulnerability in forum posts for IE users Updated to clean via Javascript too
Improvements:
T-8485 Additions to Chinese, Dutch, Finnish, Hebrew and Hungarian language packs
T-9629 Add detection to Tasks in Dashboard when approving Facetoface sessions
that are already full
T-9554 Position assignment records with a valid time from but not valid
time to can now be saved
T-9337 Dialog for finding related competencies no longer shows the
current competency
Bug fixes:
T-9511 Manually chosen course backup file names now go through clean_filename() This means filenames with spaces now work
T-9599 Update Calendar bugfix in v1.1.11 to use Moodle upstream version
T-9685 Fix PHP Notice when deleting a custom field
T-9649 Added support for HTTP_IF_MODIFIED_SINCE to files.php to avoid resending
files cached by the browser
T-9690 Fix Reportbuilder Cron failure with error 'invalidurl' on Windows servers
MDL-32388 Fix SCORM pop-ups when using Google Chrome
T-9678 Fix permissions checks when generating count for course categories
T-9677 Fix permissons on program editing pages
T-9694 Fix issue with empty attempts in IE when popups blocked
Simon
