CWP Basic Recipe 1.6.0 was released on the 2nd of June 2017. This release contains new enhancements, fixes for bugs and low-level security vulnerabilities, upgrades to SilverStripe CMS and Framework updates to 3.6.0. Changes include:
- Improvements to UserForms UI
- Improvements to API
- Support for PHP 7
- Default theme replaced with new "starter" theme (and new agency extensions module required for site configurations)
Upgrade to Recipe 1.6.0
Recipe 1.6.0 upgrade is not mandatory. However, it is recommended for all CWP sites as it contains several fixes for low-level security vulnerabilities.
Agencies are expected to regularly carry out upgrades, because as time passes, we end support for old versions. Please read our release management guide, CWP versions and support deadlines and technical upgrade instructions for more information.
What’s in Recipe 1.6.0?
This release includes SilverStripe CMS/Framework 3.6.0, which includes bugfixes and enhancements to non-visible API. This version includes support for PHP 7.
CWP co-fund pool item ORB-142 (Improve userform field conditional logic) is included. This improves the user interface when defining the display rules for UserForms fields.
The "default" CWP theme has been replaced with a new "starter" theme. As part of this change, some functionality from the CWP core has been moved into a new "agency extensions" module. This includes some of the CMS customisable site configuration settings and the home page carousel. If you still require these features, you can install the agency extensions module to restore this functionality. Full details of this change are available in the CWP Recipe 1.6.0 changelog.
The following core security fixes are included in this release:
- SS-2017-004: XSS in page history comparison
- SS-2017-003: XSS in RedirectorPage
- SS-2017-002: Member disclosure in login form
All sites upgraded to this recipe will gain protection from the above security fixes without additional manual configuration required.
The full release notes for 1.6.0 can be found on the CWP site.
Technical upgrade guide
View our description on how to carry out an upgrade for technical staff.