diff --git a/config/sync/field.field.node.blog.field_meta_tag.yml b/config/sync/field.field.node.blog.field_meta_tag.yml index 74e371027..7dd9de8e4 100644 --- a/config/sync/field.field.node.blog.field_meta_tag.yml +++ b/config/sync/field.field.node.blog.field_meta_tag.yml @@ -17,7 +17,7 @@ required: false translatable: true default_value: - - value: 'a:5:{s:20:"schema_article_image";s:79:"a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:24:"[node:url]/#primaryimage";}";s:21:"schema_article_author";s:117:"a:3:{s:5:"@type";s:6:"Person";s:4:"name";s:32:"[node:author:field_display_name]";s:3:"url";s:17:"[node:author:url]";}";s:24:"schema_article_publisher";s:428:"a:6:{s:5:"@type";s:12:"Organization";s:3:"@id";s:23:"[site:url]#organization";s:4:"name";s:11:"[site:name]";s:3:"url";s:10:"[site:url]";s:6:"sameAs";s:188:"http://facebook.com/trymautic,http://instagram.com/mautic,https://www.linkedin.com/groups/Mautic-8221750,https://www.youtube.com/channel/UCcc9_x7_gNICPkrbG2NU9Xw,https://twitter.com/mautic";s:4:"logo";a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:15:"[site:url]#logo";}}";s:19:"schema_person_image";s:76:"a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:21:"[site:url]#authorlogo";}";s:25:"schema_web_site_publisher";s:109:"a:3:{s:5:"@type";s:12:"Organization";s:3:"@id";s:23:"[site:url]#organization";s:4:"name";s:11:"[site:name]";}";}' + value: 'a:5:{s:20:"schema_article_image";s:79:"a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:24:"[node:url]/#primaryimage";}";s:21:"schema_article_author";s:117:"a:3:{s:5:"@type";s:6:"Person";s:4:"name";s:32:"[node:author:field_display_name]";s:3:"url";s:17:"[node:author:url]";}";s:24:"schema_article_publisher";s:428:"a:6:{s:5:"@type";s:12:"Organization";s:3:"@id";s:23:"[site:url]#organization";s:4:"name";s:11:"[site:name]";s:3:"url";s:10:"[site:url]";s:6:"sameAs";s:188:"http://facebook.com/trymautic,http://instagram.com/mautic,https://www.linkedin.com/groups/Mautic-8221750,https://www.youtube.com/channel/UCcc9_x7_gNICPkrbG2NU9Xw,https://x.com/mautic";s:4:"logo";a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:15:"[site:url]#logo";}}";s:19:"schema_person_image";s:76:"a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:21:"[site:url]#authorlogo";}";s:25:"schema_web_site_publisher";s:109:"a:3:{s:5:"@type";s:12:"Organization";s:3:"@id";s:23:"[site:url]#organization";s:4:"name";s:11:"[site:name]";}";}' default_value_callback: '' settings: { } field_type: metatag diff --git a/config/sync/field.field.node.event.field_meta_tag.yml b/config/sync/field.field.node.event.field_meta_tag.yml index 98417e8c0..3e5ef93a7 100644 --- a/config/sync/field.field.node.event.field_meta_tag.yml +++ b/config/sync/field.field.node.event.field_meta_tag.yml @@ -17,7 +17,7 @@ required: false translatable: true default_value: - - value: 'a:4:{s:20:"schema_article_image";s:79:"a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:24:"[node:url]/#primaryimage";}";s:21:"schema_article_author";s:117:"a:3:{s:5:"@type";s:6:"Person";s:4:"name";s:32:"[node:author:field_display_name]";s:3:"url";s:17:"[node:author:url]";}";s:24:"schema_article_publisher";s:460:"a:6:{s:5:"@type";s:12:"Organization";s:3:"@id";s:23:"[site:url]#organization";s:4:"name";s:11:"[site:name]";s:3:"url";s:10:"[site:url]";s:6:"sameAs";s:188:"http://facebook.com/trymautic,http://instagram.com/mautic,https://www.linkedin.com/groups/Mautic-8221750,https://www.youtube.com/channel/UCcc9_x7_gNICPkrbG2NU9Xw,https://twitter.com/mautic";s:4:"logo";a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:47:"[site:url]themes/custom/mauticorg_base/logo.svg";}}";s:19:"schema_person_image";s:76:"a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:21:"[site:url]#authorlogo";}";}' + value: 'a:4:{s:20:"schema_article_image";s:79:"a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:24:"[node:url]/#primaryimage";}";s:21:"schema_article_author";s:117:"a:3:{s:5:"@type";s:6:"Person";s:4:"name";s:32:"[node:author:field_display_name]";s:3:"url";s:17:"[node:author:url]";}";s:24:"schema_article_publisher";s:460:"a:6:{s:5:"@type";s:12:"Organization";s:3:"@id";s:23:"[site:url]#organization";s:4:"name";s:11:"[site:name]";s:3:"url";s:10:"[site:url]";s:6:"sameAs";s:188:"http://facebook.com/trymautic,http://instagram.com/mautic,https://www.linkedin.com/groups/Mautic-8221750,https://www.youtube.com/channel/UCcc9_x7_gNICPkrbG2NU9Xw,https://x.com/mautic";s:4:"logo";a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:47:"[site:url]themes/custom/mauticorg_base/logo.svg";}}";s:19:"schema_person_image";s:76:"a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:21:"[site:url]#authorlogo";}";}' default_value_callback: '' settings: { } field_type: metatag diff --git a/config/sync/field.field.node.landing_page.field_meta_tag.yml b/config/sync/field.field.node.landing_page.field_meta_tag.yml index 14caa3bd7..a9314d383 100644 --- a/config/sync/field.field.node.landing_page.field_meta_tag.yml +++ b/config/sync/field.field.node.landing_page.field_meta_tag.yml @@ -17,7 +17,7 @@ required: false translatable: true default_value: - - value: 'a:4:{s:20:"schema_article_image";s:79:"a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:24:"[node:url]/#primaryimage";}";s:21:"schema_article_author";s:117:"a:3:{s:5:"@type";s:6:"Person";s:4:"name";s:32:"[node:author:field_display_name]";s:3:"url";s:17:"[node:author:url]";}";s:24:"schema_article_publisher";s:460:"a:6:{s:5:"@type";s:12:"Organization";s:3:"@id";s:23:"[site:url]#organization";s:4:"name";s:11:"[site:name]";s:3:"url";s:10:"[site:url]";s:6:"sameAs";s:188:"http://facebook.com/trymautic,http://instagram.com/mautic,https://www.linkedin.com/groups/Mautic-8221750,https://www.youtube.com/channel/UCcc9_x7_gNICPkrbG2NU9Xw,https://twitter.com/mautic";s:4:"logo";a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:47:"[site:url]themes/custom/mauticorg_base/logo.svg";}}";s:19:"schema_person_image";s:76:"a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:21:"[site:url]#authorlogo";}";}' + value: 'a:4:{s:20:"schema_article_image";s:79:"a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:24:"[node:url]/#primaryimage";}";s:21:"schema_article_author";s:117:"a:3:{s:5:"@type";s:6:"Person";s:4:"name";s:32:"[node:author:field_display_name]";s:3:"url";s:17:"[node:author:url]";}";s:24:"schema_article_publisher";s:460:"a:6:{s:5:"@type";s:12:"Organization";s:3:"@id";s:23:"[site:url]#organization";s:4:"name";s:11:"[site:name]";s:3:"url";s:10:"[site:url]";s:6:"sameAs";s:188:"http://facebook.com/trymautic,http://instagram.com/mautic,https://www.linkedin.com/groups/Mautic-8221750,https://www.youtube.com/channel/UCcc9_x7_gNICPkrbG2NU9Xw,https://x.com/mautic";s:4:"logo";a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:47:"[site:url]themes/custom/mauticorg_base/logo.svg";}}";s:19:"schema_person_image";s:76:"a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:21:"[site:url]#authorlogo";}";}' default_value_callback: '' settings: { } field_type: metatag diff --git a/config/sync/metatag.metatag_defaults.node__blog.yml b/config/sync/metatag.metatag_defaults.node__blog.yml index 8317c180f..179bddc3b 100644 --- a/config/sync/metatag.metatag_defaults.node__blog.yml +++ b/config/sync/metatag.metatag_defaults.node__blog.yml @@ -39,7 +39,7 @@ tags: schema_article_image: 'a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:24:"[node:url]/#primaryimage";}' schema_article_main_entity_of_page: '[node:url]#webpage' schema_article_name: '[node:title]' - schema_article_publisher: 'a:6:{s:5:"@type";s:12:"Organization";s:3:"@id";s:23:"[site:url]#organization";s:4:"name";s:11:"[site:name]";s:3:"url";s:10:"[site:url]";s:6:"sameAs";s:178:"http://facebook.com/MauticCommunity,https://www.linkedin.com/company/mautic-community,https://www.youtube.com/channel/UCcc9_x7_gNICPkrbG2NU9Xw,https://twitter.com/mauticcommunity";s:4:"logo";a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:15:"[site:url]#logo";}}' + schema_article_publisher: 'a:6:{s:5:"@type";s:12:"Organization";s:3:"@id";s:23:"[site:url]#organization";s:4:"name";s:11:"[site:name]";s:3:"url";s:10:"[site:url]";s:6:"sameAs";s:178:"http://facebook.com/MauticCommunity,https://www.linkedin.com/company/mautic-community,https://www.youtube.com/channel/UCcc9_x7_gNICPkrbG2NU9Xw,https://x.com/mauticcommunity";s:4:"logo";a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:15:"[site:url]#logo";}}' schema_article_type: Article schema_image_object_description: '[node:field_featured_image:entity:name]' schema_image_object_height: '[node:field_featured_image:entity:field_media_image:large:height]' @@ -49,7 +49,7 @@ tags: schema_image_object_width: '[node:field_featured_image:entity:field_media_image:large:width]' schema_organization_id: '[site:url]#organization' schema_organization_name: '[site:name]' - schema_organization_same_as: 'http://facebook.com/MauticCommunity,https://www.linkedin.com/company/mautic-community,https://www.youtube.com/channel/UCcc9_x7_gNICPkrbG2NU9Xw,https://twitter.com/mauticcommunity' + schema_organization_same_as: 'http://facebook.com/MauticCommunity,https://www.linkedin.com/company/mautic-community,https://www.youtube.com/channel/UCcc9_x7_gNICPkrbG2NU9Xw,https://x.com/mauticcommunity' schema_organization_type: Organization schema_organization_url: '[site:url]' schema_person_image: 'a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:21:"[site:url]#authorlogo";}' diff --git a/config/sync/metatag.metatag_defaults.node__event.yml b/config/sync/metatag.metatag_defaults.node__event.yml index 09753a847..59dcf654d 100644 --- a/config/sync/metatag.metatag_defaults.node__event.yml +++ b/config/sync/metatag.metatag_defaults.node__event.yml @@ -34,7 +34,7 @@ tags: schema_article_image: 'a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:24:"[node:url]/#primaryimage";}' schema_article_main_entity_of_page: '[node:url]#webpage' schema_article_name: '[node:title]' - schema_article_publisher: 'a:6:{s:5:"@type";s:12:"Organization";s:3:"@id";s:23:"[site:url]#organization";s:4:"name";s:11:"[site:name]";s:3:"url";s:10:"[site:url]";s:6:"sameAs";s:178:"http://facebook.com/MauticCommunity,https://www.linkedin.com/company/mautic-community,https://www.youtube.com/channel/UCcc9_x7_gNICPkrbG2NU9Xw,https://twitter.com/mauticcommunity";s:4:"logo";a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:47:"[site:url]themes/custom/mauticorg_base/logo.svg";}}' + schema_article_publisher: 'a:6:{s:5:"@type";s:12:"Organization";s:3:"@id";s:23:"[site:url]#organization";s:4:"name";s:11:"[site:name]";s:3:"url";s:10:"[site:url]";s:6:"sameAs";s:178:"http://facebook.com/MauticCommunity,https://www.linkedin.com/company/mautic-community,https://www.youtube.com/channel/UCcc9_x7_gNICPkrbG2NU9Xw,https://x.com/mauticcommunity";s:4:"logo";a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:47:"[site:url]themes/custom/mauticorg_base/logo.svg";}}' schema_article_type: Article schema_image_object_description: '[node:field_featured_image:entity:name]' schema_image_object_height: '[node:field_featured_image:entity:field_media_image:large:height]' @@ -44,7 +44,7 @@ tags: schema_image_object_width: '[node:field_featured_image:entity:field_media_image:large:width]' schema_organization_id: '[site:url]#organization' schema_organization_name: '[site:name]' - schema_organization_same_as: 'http://facebook.com/MauticCommunity,https://www.linkedin.com/company/mautic-community,https://www.youtube.com/channel/UCcc9_x7_gNICPkrbG2NU9Xw,https://twitter.com/mauticcommunity' + schema_organization_same_as: 'http://facebook.com/MauticCommunity,https://www.linkedin.com/company/mautic-community,https://www.youtube.com/channel/UCcc9_x7_gNICPkrbG2NU9Xw,https://x.com/mauticcommunity' schema_organization_type: Organization schema_organization_url: '[site:url]' schema_person_image: 'a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:21:"[site:url]#authorlogo";}' diff --git a/config/sync/metatag.metatag_defaults.node__landing_page.yml b/config/sync/metatag.metatag_defaults.node__landing_page.yml index 903c5c42b..b9bce6dd3 100644 --- a/config/sync/metatag.metatag_defaults.node__landing_page.yml +++ b/config/sync/metatag.metatag_defaults.node__landing_page.yml @@ -35,7 +35,7 @@ tags: schema_article_image: 'a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:24:"[node:url]/#primaryimage";}' schema_article_main_entity_of_page: '[node:url]#webpage' schema_article_name: '[node:title]' - schema_article_publisher: 'a:6:{s:5:"@type";s:12:"Organization";s:3:"@id";s:23:"[site:url]#organization";s:4:"name";s:11:"[site:name]";s:3:"url";s:10:"[site:url]";s:6:"sameAs";s:178:"http://facebook.com/MauticCommunity,https://www.linkedin.com/company/mautic-community,https://www.youtube.com/channel/UCcc9_x7_gNICPkrbG2NU9Xw,https://twitter.com/mauticcommunity";s:4:"logo";a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:47:"[site:url]themes/custom/mauticorg_base/logo.svg";}}' + schema_article_publisher: 'a:6:{s:5:"@type";s:12:"Organization";s:3:"@id";s:23:"[site:url]#organization";s:4:"name";s:11:"[site:name]";s:3:"url";s:10:"[site:url]";s:6:"sameAs";s:178:"http://facebook.com/MauticCommunity,https://www.linkedin.com/company/mautic-community,https://www.youtube.com/channel/UCcc9_x7_gNICPkrbG2NU9Xw,https://x.com/mauticcommunity";s:4:"logo";a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:47:"[site:url]themes/custom/mauticorg_base/logo.svg";}}' schema_article_type: Article schema_image_object_description: '[node:field_featured_image:entity:name]' schema_image_object_height: '[node:field_featured_image:entity:field_media_image:large:height]' @@ -45,7 +45,7 @@ tags: schema_image_object_width: '[node:field_featured_image:entity:field_media_image:large:width]' schema_organization_id: '[site:url]#organization' schema_organization_name: '[site:name]' - schema_organization_same_as: 'http://facebook.com/MauticCommunity,https://www.linkedin.com/company/mautic-community,https://www.youtube.com/channel/UCcc9_x7_gNICPkrbG2NU9Xw,https://twitter.com/mauticcommunity' + schema_organization_same_as: 'http://facebook.com/MauticCommunity,https://www.linkedin.com/company/mautic-community,https://www.youtube.com/channel/UCcc9_x7_gNICPkrbG2NU9Xw,https://x.com/mauticcommunity' schema_organization_type: Organization schema_organization_url: '[site:url]' schema_person_image: 'a:2:{s:5:"@type";s:11:"ImageObject";s:3:"url";s:21:"[site:url]#authorlogo";}' diff --git a/config/sync/metatag.metatag_defaults.taxonomy_term.yml b/config/sync/metatag.metatag_defaults.taxonomy_term.yml index ec6cb5401..982523ad8 100644 --- a/config/sync/metatag.metatag_defaults.taxonomy_term.yml +++ b/config/sync/metatag.metatag_defaults.taxonomy_term.yml @@ -22,5 +22,5 @@ tags: schema_web_page_description: '[term:description]' schema_web_page_id: '[current-page:url]#webpage' schema_web_page_in_language: en-US - schema_web_page_publisher: 'a:4:{s:5:"@type";s:12:"Organization";s:3:"@id";s:27:"site[site:url]#organization";s:4:"name";s:11:"[site:name]";s:6:"sameAs";s:178:"http://facebook.com/MauticCommunity,https://www.linkedin.com/company/mautic-community,https://www.youtube.com/channel/UCcc9_x7_gNICPkrbG2NU9Xw,https://twitter.com/mauticcommunity";}' + schema_web_page_publisher: 'a:4:{s:5:"@type";s:12:"Organization";s:3:"@id";s:27:"site[site:url]#organization";s:4:"name";s:11:"[site:name]";s:6:"sameAs";s:178:"http://facebook.com/MauticCommunity,https://www.linkedin.com/company/mautic-community,https://www.youtube.com/channel/UCcc9_x7_gNICPkrbG2NU9Xw,https://x.com/mauticcommunity";}' schema_web_page_type: CollectionPage diff --git a/docroot/core/assets/vendor/ckeditor/CHANGES.md b/docroot/core/assets/vendor/ckeditor/CHANGES.md index 94ecf8517..842deaff9 100644 --- a/docroot/core/assets/vendor/ckeditor/CHANGES.md +++ b/docroot/core/assets/vendor/ckeditor/CHANGES.md @@ -80,7 +80,7 @@ Fixed issues: Issue summary: The vulnerability allowed to inject malformed comments HTML bypassing content sanitization, which could result in executing JavaScript code. See [CVE-2021-41165](https://github.com/ckeditor/ckeditor4/security/advisories/GHSA-7h26-63m7-qhf2) for more details. -* Fixed XSS vulnerability in the core module reported by [Maurice Dauer](https://twitter.com/laytonctf). +* Fixed XSS vulnerability in the core module reported by [Maurice Dauer](https://x.com/laytonctf). Issue summary: The vulnerability allowed to inject malformed HTML bypassing content sanitization, which could result in executing JavaScript code. See [CVE-2021-41164](https://github.com/ckeditor/ckeditor4/security/advisories/GHSA-pvmx-g8h5-cprj) for more details. @@ -308,11 +308,11 @@ Other Changes: **Security Updates:** -* Fixed XSS vulnerability in the HTML data processor reported by [Michał Bentkowski](https://twitter.com/securitymb) of Securitum. +* Fixed XSS vulnerability in the HTML data processor reported by [Michał Bentkowski](https://x.com/securitymb) of Securitum. Issue summary: It was possible to execute XSS inside CKEditor after persuading the victim to: (i) switch CKEditor to source mode, then (ii) paste a specially crafted HTML code, prepared by the attacker, into the opened CKEditor source area, and (iii) switch back to WYSIWYG mode or (i) copy the specially crafted HTML code, prepared by the attacker and (ii) paste it into CKEditor in WYSIWYG mode. -* Fixed XSS vulnerability in the WebSpellChecker Dialog plugin reported by [Pham Van Khanh](https://twitter.com/rskvp93) from Viettel Cyber Security. +* Fixed XSS vulnerability in the WebSpellChecker Dialog plugin reported by [Pham Van Khanh](https://x.com/rskvp93) from Viettel Cyber Security. Issue summary: It was possible to execute XSS using CKEditor after persuading the victim to: (i) switch CKEditor to source mode, then (ii) paste a specially crafted HTML code, prepared by the attacker, into the opened CKEditor source area, then (iii) switch back to WYSIWYG mode, and (iv) preview CKEditor content outside CKEditor editable area. @@ -701,7 +701,7 @@ Other Changes: **Security Updates:** -* Fixed XSS vulnerability in the [Enhanced Image](https://ckeditor.com/cke4/addon/image2) (`image2`) plugin reported by [Kyaw Min Thein](https://twitter.com/kyawminthein99). +* Fixed XSS vulnerability in the [Enhanced Image](https://ckeditor.com/cke4/addon/image2) (`image2`) plugin reported by [Kyaw Min Thein](https://x.com/kyawminthein99). Issue summary: It was possible to execute XSS inside CKEditor using the `` tag and specially crafted HTML. Please note that the default presets (Basic/Standard/Full) do not include this plugin, so you are only at risk if you made a custom build and enabled this plugin. @@ -953,7 +953,7 @@ Fixed Issues: * [#16920](https://dev.ckeditor.com/ticket/16920): Fixed: Several plugins not using the [Dialog](https://ckeditor.com/cke4/addon/dialog) plugin as a direct dependency. * [PR#336](https://github.com/ckeditor/ckeditor4/pull/336): Fixed: Typo in [`CKEDITOR.getCss()`](https://ckeditor.com/docs/ckeditor4/latest/api/CKEDITOR.html#method-getCss) API documentation. Thanks to [knusperpixel](https://github.com/knusperpixel)! * [#17027](https://dev.ckeditor.com/ticket/17027): Fixed: Command event data should be initialized as an empty object. -* Fixed the behavior of HTML parser when parsing `src`/`srcdoc` attributes of the `