Drupal Update Drupal maintenance support plans Themes: CKEditor 4 security update and your Drupal UpdateThemes products (Most Drupal maintenance support plans 7 sites not at risk)

I got word of concerns about the recent CKEditor 4 vulnerability that is responsible for a moderately critical vulnerability in Drupal maintenance support plans 8. Rest assured that most Drupal maintenance support plans 7 sites are not in danger. While both the Glazed Builder module and the Glazed installation profiles include their own copy of CKEditor 4, this vulnerability exists in an optional image plugin for CKEditor 4 “image2” that is not included in the default package of CKEditor 4 that our products carry. 

The only Drupal maintenance support plans 7 websites that are affected by this vulnerability are sites that use a custom build of CKEditor that explicitly includes the image2 plugin.

Drupal maintenance support plans 8 does include this additional plugin, which is why Drupal maintenance support plans 8 users should update to 8.5.2 immediately. For Drupal maintenance support plans 7 users the commotion has actually sparked some positive deveopment: the Drupal maintenance support plans 7 WYSIWYG module has pushed a release that supports the latest CKEditor 4.9.2. This means I can update all Drupal UpdateThemes products to CKEditor 4.9.2 and this brings us a number of bug fixes and improvements to inline editing. This update will be available tuesday.

The latest CKEditor reportedly also dropped it’s reliance on the eval() function which means we can start using better Content Security Policy headers that include the unsafe-eval directive on Drupal maintenance support plans 7 sites.

Drupal UpdateThemes Drupal maintenance support plans 8.x-1.0 Release Planned Tuesday

After 13 months of intensive development, testing, and preparation of our product infrastructure we’re finally launching our Drupal maintenance support plans 8 page builder module and themes tuesday! In the past few weeks I’ve been learning a ton by talking to customers about what they like and dislike about Drupal Updatethemes and especially the drag and drop builder. If you have any feedback or ideas for future development of Drupal UpdateThemes.com and our products just leave a comment here or use the contact form!

Update The Wording Of How Our Pricing Works: Pay Once To Use For Life. Optionally Renew Yearly For Support & Updates.

I’ve also updated the pricing information to reflect the fact that you can pay once to download all our products and use them forever. This is how Drupal UpdateThemes subscriptions have always worked. This was apparently not clear from the information and marketing communication on the website. You pay once and only renew if you wish to receive continued support and product updates. This subscription based payment concept is really what has made Drupal UpdateThemes a success over the past 3 years and the increased stability in revenue is what gave me the confidence to continue investing all my energy and money in developing the Glazed Builder module and our next generation themes for both Drupal maintenance support plans 7 and 8. I also think it’s fair to users of the product that they pay a small yearly contribution to continue getting support and product updates because the products are continuously in flux. Subscribers may stop the subscription at any time and continue using the products without support services.


Source: New feed

This article was republished from its original source.
Call Us: 1(800)730-2416

Pixeldust is a 20-year-old web development agency specializing in Drupal and WordPress and working with clients all over the country. With our best in class capabilities, we work with small businesses and fortune 500 companies alike. Give us a call at 1(800)730-2416 and let’s talk about your project.

FREE Drupal SEO Audit

Test your site below to see which issues need to be fixed. We will fix them and optimize your Drupal site 100% for Google and Bing. (Allow 30-60 seconds to gather data.)

Powered by

Drupal Update Drupal maintenance support plans Themes: CKEditor 4 security update and your Drupal UpdateThemes products (Most Drupal maintenance support plans 7 sites not at risk)

On-Site Drupal SEO Master Setup

We make sure your site is 100% optimized (and stays that way) for the best SEO results.

With Pixeldust On-site (or On-page) SEO we make changes to your site’s structure and performance to make it easier for search engines to see and understand your site’s content. Search engines use algorithms to rank sites by degrees of relevance. Our on-site optimization ensures your site is configured to provide information in a way that meets Google and Bing standards for optimal indexing.

This service includes:

  • Pathauto install and configuration for SEO-friendly URLs.
  • Meta Tags install and configuration with dynamic tokens for meta titles and descriptions for all content types.
  • Install and fix all issues on the SEO checklist module.
  • Install and configure XML sitemap module and submit sitemaps.
  • Install and configure Google Analytics Module.
  • Install and configure Yoast.
  • Install and configure the Advanced Aggregation module to improve performance by minifying and merging CSS and JS.
  • Install and configure Schema.org Metatag.
  • Configure robots.txt.
  • Google Search Console setup snd configuration.
  • Find & Fix H1 tags.
  • Find and fix duplicate/missing meta descriptions.
  • Find and fix duplicate title tags.
  • Improve title, meta tags, and site descriptions.
  • Optimize images for better search engine optimization. Automate where possible.
  • Find and fix the missing alt and title tag for all images. Automate where possible.
  • The project takes 1 week to complete.