This week we have releases of both the 1.0 and 1.1 versions of Totara, which both include one security fix.
Here's the 1.0.36 changelog:
Release 1.0.36 (2 May 2012): ================================================== Security fixes: T-9666 XSS vulnerability in forum posts for IE users Updated to clean via Javascript too Improvements: T-8485 Additions to Chinese, Dutch, Finnish, Hebrew and Hungarian language packs Bug fixes: T-9511 Manually chosen course backup file names now go through clean_filename() This means filenames with spaces now work T-9612 Fix bug in Reportbuilder to allow users to view hidden reports T-9599 Update Calendar bugfix in v1.0.32 to use Moodle upstream version MDL-32388 Fix SCORM pop-ups when using Google Chrome T-9692 Bug in sort order calculation for new hierarchy items
And here's the 1.1.15 changelog:
Release 1.1.15 (2 May 2012): ================================================== Security fixes: T-9666 XSS vulnerability in forum posts for IE users Updated to clean via Javascript too Improvements: T-8485 Additions to Chinese, Dutch, Finnish, Hebrew and Hungarian language packs T-9629 Add detection to Tasks in Dashboard when approving Facetoface sessions that are already full T-9554 Position assignment records with a valid time from but not valid time to can now be saved T-9337 Dialog for finding related competencies no longer shows the current competency Bug fixes: T-9511 Manually chosen course backup file names now go through clean_filename() This means filenames with spaces now work T-9599 Update Calendar bugfix in v1.1.11 to use Moodle upstream version T-9685 Fix PHP Notice when deleting a custom field T-9649 Added support for HTTP_IF_MODIFIED_SINCE to files.php to avoid resending files cached by the browser T-9690 Fix Reportbuilder Cron failure with error 'invalidurl' on Windows servers MDL-32388 Fix SCORM pop-ups when using Google Chrome T-9678 Fix permissions checks when generating count for course categories T-9677 Fix permissons on program editing pages T-9694 Fix issue with empty attempts in IE when popups blocked
Simon