Tendenci

Latest version: v15.3.1

Safety actively analyzes 702540 Python packages for vulnerabilities to keep your Python projects secure.

Scan your dependencies

Page 16 of 23

11.4

Not secure
* Upgrade jQuery from 2.1.1 to 3.4.1 (latest)
***Important*: Back up your site first before running tendenci update! Any third party jQuery plugins you use that are not compatible with the latest version of jQuery will potentially break your site.**
* Resolve the issue about django-admin-bootstrapped not compatible with Django 1.11
* Added none option to image_class_list for tinymce editor
* Added a setting to control whether or not to create user on form submission (default false)
**Note that: ** Even if this setting is set to false, a new user will still be created if payment is involved or "Subscribe to Group" functionality is selected. To make your site GDPR compliant, you can add a new checkbox field to your form to obtain user's consent.
* Other small fixes

11.3.1

Not secure
* Added education field to the staff module
* Added department and position dropdowns to staff search
* Removed Facebook like button
* Removed Google+ url from anywhere
* Blocked files with a comma or two consecutive dots in it
* Specified stripe api version
* Fixed fullpage plugin for newsletter edit

11.3

Not secure
* Set app info for stripe
* Added fullpage plugin to WYSIWYG editor for newsletters

11.2.12

Not secure
* SECURITY: striped null byte to avoid null byte injection attack
* Fixed "masonry is not a function" js error for photos
* Resolved issue not being able to delete users who posted on forum
* Prevented tickets from being cascade deleted with user deletion
* Allowed to specify both name and display name separated by a colon in the choices field
* Allowed to set back to the default field type for membership app fields
* Added make payment to financial section of tendenci top menu
* Commented files that are listed underneath content on event view
* Added pagination to videos list for performance reason
* Updated django version to 1.11.23

11.2.11

Not secure
* Added the group option on articles search
* Added the option to pull past events for list_events template tag
* Added the options 'file_cat_id' and 'file_sub_cat_name' to the list_files template tag
* Made some changes for files/search-results.html
* Removed "t-files-title" unused class in files.css
* Changed the default sort order for entities and user groups in the admin backend to sort by id ascending
* Fixed format issue on profile view when membership is disabled
* Fixed TypeError at /events/reports/financial/
* Ensured absolute url for canonial url
* Fixed an error for invoices reports
* Fixed an issue for helpdesk when creating a ticket from emails sent from no-reply address
* Other small fixes

11.2.10

Not secure
* Fixed the meta title and description in articles/view.html
* Added grid view option for articles
* Moved meta to have it visible in the events
* Removed Google+ from social_media/icons.html

Page 16 of 23

© 2025 Safety CLI Cybersecurity Inc. All Rights Reserved.