Releases: 10up/restricted-site-access
7.6.1
Fixed
- Ensure field data is set properly before we use it. Resolves a fatal error with Elementor (props @ktorktor, Vishal Patel, fatjester, @dkotter, @peterwilsoncc via #371).
New Contributors
- @ktorktor made their first contribution in #371
- Vishal Patel made their first contribution in #371
- fatjester made their first contribution in #371
Full Changelog: 7.6.0...7.6.1
View closed items in the milestone.
7.6.0
Added
- New setting allowing you to hide the WordPress admin bar on the frontend for specific user roles (props @sanketio, @fabiankaegy, @jeffpaul, @dkotter via #362).
- New
RSA_NETWORK_MODEconstant to define default setting for network mode for multisite (props @sanketio, @claytoncollie, @dkotter via #363). - More details on how caching may impact the plugin (props @peterwilsoncc, @jakemgold, @jeffpaul, @dkotter via GHSA-jfqv-gvp2-qq5f).
Fixed
- Ensure IP addresses can be saved properly at the network level (props @dkotter, @peterwilsoncc via #367).
Security
- Prevent caching of page content when using an IP allow list (props @peterwilsoncc, @fabiankaegy, @joemcgill, @jakemgold, @jeffpaul, @dkotter via GHSA-jfqv-gvp2-qq5f).
- Bump
cross-spawnfrom 7.0.3 to 7.0.6,@wordpress/scriptsfrom 29.0.0 to 30.16.0 andhttp-proxy-middlewarefrom 2.0.6 to 2.0.9 (props @dependabot, @iamdharmesh via #355). - Bump
tar-fsfrom 3.0.8 to 3.0.9 (props @dependabot, @faisal-alvi via #359). - Bump
brace-expansionfrom 1.1.11 to 1.1.12,on-headersfrom 1.0.2 to 1.1.0 andcompressionfrom 1.7.4 to 1.8.1 (props @dependabot, @iamdharmesh via #361).
Developer
- Update screenshots to reflect current state of plugin (props @iamdharmesh, @rickalee, @jeffpaul via #358).
- Ensure all our GitHub Actions workflow files have proper permissions (props @jeffpaul, @dkotter via #360).
- Fix issue with attaching release assets during release deploy action (props @jeffpaul, @dkotter via #364).
New Contributors
- @rickalee made their first contribution in #358
- @fabiankaegy made their first contribution in #362
- @sanketio made their first contribution in #362
- @claytoncollie made their first contribution in #363
- @joemcgill made their first contribution in #362
- @joemcgill made their first contribution in https://github.com/10up/restricted-site-access/security/advisories/GHSA-jfqv-gvp2-qq5f
Full Changelog: 7.5.3...7.6.0
View closed items in the milestone.
7.5.3
Note that this version bumps the WordPress minimum supported version from 6.5 to 6.6.
Changed
- Bump WordPress "tested up to" version 6.8 (props @kmgalanakis, @jeffpaul, @dkotter via #349, #352).
- Bump WordPress minimum from 6.5 to 6.6 (props @jeffpaul via #351, #352).
Fixed
- PHP Notice that the function
_load_textdomain_just_in_timewas called incorrectly (props @kmgalanakis, @dkotter via #350).
Security
- Bump
axiosfrom 1.7.4 to 1.8.3 (props @dependabot, @iamdharmesh via #346).
Developer
- Update the number of tags in our readme (props @jeffpaul via #353).
- Update all third-party actions our workflows rely on to use versions based on specific commit hashes (props @jeffpaul, @dkotter via #347).
New Contributors
- @kmgalanakis made their first contribution in #349
Full Changelog: 7.5.2...7.5.3
View closed items in the milestone.
7.5.2
Note that this version bumps the WordPress minimum supported version from 6.4 to 6.5.
Changed
- Bump WordPress "tested up to" version 6.7 (props @sudip-md, @jeffpaul, @mehidi258 via #335, #336).
- Bump WordPress minimum from 6.4 to 6.5 (props @sudip-md, @jeffpaul, @mehidi258 via #335, #336).
Fixed
- Add missing textdomain to a few strings (props @NekoJonez, @dkotter via #338).
Security
- Bump
axiosfrom 1.6.7 to 1.7.4 (props @dependabot, @faisal-alvi via #326). - Bump
webpackfrom 5.90.0 to 5.94.0 (props @dependabot, @faisal-alvi via #327). - Bump
wsfrom 7.5.10 to 8.18.0 and@wordpress/scriptsfrom 27.1.0 to 29.0.0 (props @dependabot, @faisal-alvi via #328). - Bump
expressfrom 4.19.2 to 4.21.2,sendfrom 0.18.0 to 0.19.0 andserve-staticfrom 1.15.0 to 1.16.2 (props @dependabot, @peterwilsoncc via #340). - Bump
@wordpress/e2e-test-utils-playwrightfrom 1.7.0 to 1.16.0,nanoidfrom 3.3.7 to 3.3.8,mochafrom 10.2.0 to 11.0.1 and removescookie(props @dependabot, @peterwilsoncc via #341).
Developer
- Support for the WordPress.org plugin preview (props @Sidsector9, @jeffpaul, @dkotter via #330).
- Fix typo in the changelog URL (props @chandrapatel, @jeffpaul via #333).
- Disable linting on external libraries (props @Sidsector9, @dkotter via #323).
- Add plugin banner image to README and update badges (props @jeffpaul, @dkotter via #329, #332).
New Contributors
- @chandrapatel made their first contribution in #333
- @mehidi258 made their first contribution in #335
- @NekoJonez made their first contribution in #338
Full Changelog: 7.5.1...7.5.2
View closed items in the milestone.
7.5.1
Note that this version bumps the WordPress minimum supported version from 5.7 to 6.4.
Changed
- Bump WordPress "tested up to" version 6.6 (props @sudip-md, @jeffpaul, @dkotter via #313, #318).
- Bump WordPress minimum from 5.7 to 6.4 (props @sudip-md, @jeffpaul, @dkotter via #313, #318).
Security
- Bump
tj-actions/changed-filesfrom 32 to 41 (props @dependabot, @iamdharmesh via #297). - Bump
expressfrom 4.18.2 to 4.19.2 (props @dependabot, @Sidsector9 via #312). - Bump
follow-redirectsfrom 1.15.5 to 1.15.6 (props @dependabot, @Sidsector9 via #312). - Bump
webpack-dev-middlewarefrom 5.3.3 to 5.3.4 (props @dependabot, @Sidsector9 via #312). - Bump
bracesfrom 3.0.2 to 3.0.3 (props @dependabot, @iamdharmesh via #319). - Bump
pac-resolverfrom 7.0.0 to 7.0.1 (props @dependabot, @iamdharmesh via #319). - Bump
socksfrom 2.7.1 to 2.8.3 (props @dependabot, @iamdharmesh via #319). - Bump
wsfrom 7.5.9 to 7.5.10 (props @dependabot, @iamdharmesh via #319).
Developer
- Clean up NPM dependencies and update node to v20 (props @Sidsector9, @dkotter via #303).
- Update
CODEOWNERS(props @jeffpaul, @dkotter via #300). - Disabled auto sync pull requests with target branch (props @iamdharmesh, @jeffpaul via #307).
- Upgrade
download-artifactfrom v3 to v4 (props @iamdharmesh, @jeffpaul via #309). - Replaced lee-dohm/no-response with actions/stale to help with closing no-response/stale issues (props @jeffpaul, @dkotter via #310).
- Added a "Testing" section in the
CONTRIBUTING.mdfile (props @kmgalanakis, @jeffpaul via #314). - Removed
ipdependency (props @dependabot, @Sidsector9, @iamdharmesh via #312, #319).
New Contributors
Full Changelog: 7.5.0...7.5.1
View closed items in the milestone.
7.5.0
Note: this release changes the default behavior for new installs in regards to IP detection. This shouldn't impact existing installs but there are two filters that can be used to change this behavior. See the readme for full details.
Fixed
Security
- For new installs, ensure we only trust the
REMOTE_ADDRHTTP header by default. Existing installs will still utilize the old list of approved headers but can modify this (and are recommended to) by using thersa_trusted_headersfilter (props @dkotter, @peterwilsoncc, @dustinrue, @mikhail-net, Darius Sveikauskas via #290). - Bump
axiosfrom 0.25.0 to 1.6.2 and@wordpress/scriptsfrom 23.7.2 to 26.19.0 (props @dependabot, @dkotter via #293).
New Contributors
- @dustinrue made their first contribution in #290
- @mikhail-net made their first contribution in #290
- Darius Sveikauskas made their first contribution in #290
Full Changelog: 7.4.1...7.5.0
View closed items in the milestone.
7.4.1
Added
- GitHub Action summary report for Cypress end-to-end tests (props @jayedul, @Sidsector9 via #258).
Restricted_Site_Access::append_ips()method to add IP addresses programatically (props @Sidsector9, @faisal-alvi via #267).- Repository Automator GitHub Action (props @iamdharmesh, @Sidsector9 via #273).
Changed
- Bumped WordPress "tested up to" version 6.4 (props @kirtangajjar, @Sidsector9, @qasumitbagthariya, @jeffpaul via #271, #288).
- WordPress compatibility validation library namespace (props @Sidsector9, @dkotter via #278).
- Documentation to clarify what the restricted site access & discourage search engine options do (props @lkraav, @jeffpaul, @helen, @dinhtungdu, @bmarshall511, @Sidsector9 via #262).
- Updates the Dependency Review GitHub Action to check for GPL-compatible licenses (props @jeffpaul, @Sidsector9 via #261).
Fixed
- Issue with autovivification (props @mae829, @Sidsector9 via #281, @turtlepod via #281).
Security
- Add PHP environment compatibility checker (props @vikrampm1, @Sidsector9 via #268).
- Bump
word-wrapfrom1.2.3to1.2.4(props @Sidsector9 via #266). - Bump
semverfrom5.7.1to5.7.2(props @Sidsector9 via #264). - Bump
tough-cookiefrom4.1.2to4.1.3(props @Sidsector9 via #270). - Bump
@cypress/requestfrom2.88.10to2.88.12(props @Sidsector9 via #270). - Bump
postcssfrom8.4.18to8.4.31(props @Sidsector9 via #279). - Bump
@babel/traversefrom7.20.0to7.23.2(props @Sidsector9 via #279). - Bump
Cypressversion from10.3.0to13.2.0(props @iamdharmesh, @Sidsector9 via #276). - Bump
@10up/cypress-wp-utilsversion to0.2.0(props @iamdharmesh, @Sidsector9 via #276). - Bump
@wordpress/envversion from5.4.0to8.7.0(props @iamdharmesh, @Sidsector9 via #276). - Bump
@babel/traversefrom 7.20.0 to 7.23.2 (props @dependabot, @Sidsector9 via #282).
New Contributors
- @mikegibbons4 made their first contribution via #221
- @mae829 made their first contribution via #281
- @turtlepod made their first contribution via #281
- @qasumitbagthariya made their first contribution via #288
Full Changelog: 7.4.0...7.4.1
View closed items in the milestone.
7.4.0
Added
- Support for application passwords (props @kirtangajjar, @peterwilsoncc, @Sidsector9 via #247).
- Support for custom header based allow-listing (props @mikelking, @ravinderk, @dkotter, @jeffpaul via #242).
Changed
- Support Level from
ActivetoStable(props @jeffpaul, @Sidsector9 via #244). - Bump WordPress "tested up to" version 6.2 (props @jayedul, @Sidsector9 via 251).
- Improve Github actions workflow (props @Sidsector9, @dkotter via #227, #253).
Fixed
- Plugin settings header UX (props @barryceelen, @Sidsector9 via #236).
- Issue that caused redirect loop (props @Sidsector9, @cadic, @peterwilsoncc) via #221.
Security
- Run E2E tests on the final ZIP build (props @iamdharmesh, @jayedul via #249).
- Bump
json5from1.0.1to1.0.2(props @Sidsector9 via #241). - Bump
simple-gitfrom3.15.0to3.16.0(props @Sidsector9 via #243). - Bump
http-cache-semanticsfrom 4.1.0 to 4.1.1 (props @Sidsector9 via #245). - Bump
@sideway/formulafrom 3.0.0 to 3.0.1 (props @Sidsector9 via #246). - Bump
webpackfrom5.74.0to5.76.1(props @Sidsector9 via #248).
New Contributors
- @barryceelen made their first contribution in #236.
- @kirtangajjar made their first contribution in #247.
- @mikelking made their first contribution in #242.
- @ravinderk made their first contribution in #242.
- @jayedul made their first contribution in #251, #249.
- @mikegibbons4 made their first contribution in #221.
Full Changelog: 7.3.5...7.4.0
View closed items in the milestone.
7.3.5
Added
- Show an admin notice if our autoloader doesn't exist (props @dkotter, @pablojmarti, @shahzaib10up, @peterwilsoncc via #231).
Fixed
- Ensure we load our autoloader from the root of our plugin directory (props @dkotter, @pablojmarti, @shahzaib10up, @peterwilsoncc via #231).
Changed
- Improved performance of our E2E tests (props @Sidsector9, @iamdharmesh via #218).
- Release instructions and release ZIP building via GitHub Action (props @dkotter, @faisal-alvi via #232).
Security
- Bump
loader-utilsfrom 2.0.3 to 2.0.4 (props @dependabot via #226). - Bump
simple-gitfrom 3.6.0 to 3.15.0 (props @dependabot via #230).
New Contributors
- @pablojmarti made their first contribution in #231
- @shahzaib10up made their first contribution in #231
Full Changelog: 7.3.4...7.3.5
View closed items in the milestone.
7.3.4
Fixed
- Fatal error due to missing vendor directory (props @Sidsector9 via #223).