6.0.2
| Security |
[20260101] Fixed inadequate content filtering for data URLs.
|
| Security |
[20260102] Fixed an XSS vulnerability in the Page Break plugin.
|
| Addition |
Added full support for PHP 8.5.
|
| Fixed |
#46503 — Updated indirect NPM development dependencies to fix security vulnerabilities reported by the audit.
|
| Fixed |
#46484 — Fixed start-level handling when toggling menus.
|
| Fixed |
#46475 — Fixed a deprecated message in the personal message settings.
|
| Fixed |
#46450 — Fixed emailToPunycode() throwing a “Prohibited input U+0000005C” exception.
|
| Fixed |
#46279 — The extended Cassiopeia template now uses the hover colour for btn-primary buttons.
|
| Fixed |
#46518 — Added translations for front-end language keys in the extended Cassiopeia template.
|
| Fixed |
#46541 — Prevented an error when the language file cache is corrupted.
|
| Fixed |
#46543 — Fixed TinyMCE display in dark mode.
|
| Fixed |
#46572 — Updated indirect NPM development dependencies to fix security vulnerabilities reported by the audit.
|
| Fixed |
#46550 — Fixed the display of deeply nested submenu items.
|
| Fixed |
#46591 — Updated NPM development dependencies to fix security vulnerabilities reported by the audit.
|
| Note |
Joomla 6.0.2 is a security release. Installing the update as soon as possible is strongly recommended.
|
| Note |
Starting with Joomla 6.0.2, running Joomla on PHP 8.5 is officially supported.
|
| Note |
Joomla 6.0.2 was released together with Joomla 5.4.2.
|
| Note |
Creating a website backup and checking the compatibility of installed extensions and templates is recommended before updating.
|
| Note |
When upgrading from a version earlier than Joomla 5.4, update to Joomla 5.4 first and then upgrade to Joomla 6.
|