- Fixed [HIGH] PHP File Change Scanner scans all files, regardless of the configured extensions
New features
- Support for Joomla! 5 installations with a custom public folder
Miscellaneous changes
- Joomla 5 Dark Mode workarounds
New features
- Support bCrypt encryption for Administrator Password Protection on Apache 2.4+
Bug fixes
- [HIGH] NginX Conf Maker: Backend protection would make backend unavailable in newer NginX versions
- [LOW] HSTS option UI wouldn't let you turn it off
- [LOW] Htaccess Maker: Fixed PHP notices when a particular combination of options was used
- [LOW] URL Redirections appears in the Core version, even though it won't do...
New features
- Block Suspicious Core Parameters feature
Bug fixes
- [HIGH] The “Add persistent offenders to the IP Disallow List” did not work due to a typo
- [LOW] Missing language string
- [LOW] Missing translations when using Joomla Scheduled Tasks
- [LOW] PHP 8.3 deprecated notice in ComponentParameters service (no functional issue)
- [LOW] PHP deprecated notice about implicit float to integer conversion on PHP File...
What's new?
WAF Exceptions now work with the Block Suspicious URL Parameters feature. Since this feature is likely to cause false positives on misbehaving extensions, we changed our WAF Exceptions feature to also override the Block Suspicious URL Parameters when an exception is matched.
Even better workaround for the Joomla! Database Maintenance page bug. The Database page in Joomla incorrectly claimed that Admin Tools' database tables where...
- Added more options to the not log and not email for the reasons options
- Added Optional description field on “Never block these IPs” and “Never blocked domains”
- Fixed [MEDIUM] Suspicious Core Parameter always applied the cmd filter, leading to false positives