blob: 8b74fa94cf8498bebb50defcfb0b3f52f2452d1e [file] [log] [blame]
Derek Jones8ede1a22011-10-05 13:34:52 -05001##########
2Change Log
3##########
4
5Version 2.1.0 (planned)
6=======================
7
8Release Date: Not Released
9
10- General Changes
Timothy Warrendeb65962011-10-17 12:26:02 -040011
Timothy Warren52aff712011-10-17 12:26:56 -040012 - Added an optional backtrace to php-error template.
Derek Jones8ede1a22011-10-05 13:34:52 -050013 - Added Android to the list of user agents.
14 - Added Windows 7 to the list of user platforms.
15 - Callback validation rules can now accept parameters like any other
16 validation rule.
17 - Ability to log certain error types, not all under a threshold.
18 - Added html_escape() to :doc:`Common
19 functions <general/common_functions>` to escape HTML output
20 for preventing XSS.
21 - Added support for pem,p10,p12,p7a,p7c,p7m,p7r,p7s,crt,crl,der,kdb,rsa,cer,sst,csr Certs to mimes.php.
22 - Added support pgp,gpg to mimes.php.
23 - Added support 3gp, 3g2, mp4, wmv, f4v, vlc Video files to mimes.php.
24 - Added support m4a, aac, m4u, xspf, au, ac3, flac, ogg Audio files to mimes.php.
25
26- Helpers
27
28 - Added increment_string() to :doc:`String
29 Helper <helpers/string_helper>` to turn "foo" into "foo-1"
30 or "foo-1" into "foo-2".
31 - Altered form helper - made action on form_open_multipart helper
32 function call optional. Fixes (#65)
33 - url_title() will now trim extra dashes from beginning and end.
Timothy Warren74479272011-10-10 10:51:55 -040034 - Improved speed of :doc:`String Helper <helpers/string_helper>`'s random_string() method
Timothy Warren01b56bc2011-10-10 10:45:45 -040035 - Added XHTML Basic 1.1 doctype to :doc:`HTML Helper <helpers/html_helper>`.
Derek Jones8ede1a22011-10-05 13:34:52 -050036
37- Database
38
Timothy Warren01b56bc2011-10-10 10:45:45 -040039 - Added a `CUBRID <http://www.cubrid.org/>`_ driver to the :doc:`Database
Derek Jones8ede1a22011-10-05 13:34:52 -050040 Driver <database/index>`. Thanks to the CUBRID team for
41 supplying this patch.
Timothy Warren01b56bc2011-10-10 10:45:45 -040042 - Added a PDO driver to the :doc:`Database Driver <database/index>`.
Derek Jones8ede1a22011-10-05 13:34:52 -050043 - Typecast limit and offset in the :doc:`Database
44 Driver <database/queries>` to integers to avoid possible
45 injection.
46 - Added additional option 'none' for the optional third argument for
47 $this->db->like() in the :doc:`Database
48 Driver <database/active_record>`.
Timothy Warren01b56bc2011-10-10 10:45:45 -040049 - Added $this->db->insert_batch() support to the OCI8 (Oracle) driver.
Kyle Farris053dbc82011-10-14 18:06:52 -030050 - Added new :doc:`Active Record <database/active_record>` methods that return
51 the SQL string of queries without executing them: get_compiled_select(),
52 get_compiled_insert(), get_compiled_update(), get_compiled_delete().
Derek Jones8ede1a22011-10-05 13:34:52 -050053
54- Libraries
55
56 - Changed $this->cart->insert() in the :doc:`Cart
57 Library <libraries/cart>` to return the Row ID if a single
58 item was inserted successfully.
59 - Added support to set an optional parameter in your callback rules
60 of validation using the :doc:`Form Validation
61 Library <libraries/form_validation>`.
62 - Driver children can be located in any package path.
63 - Added max_filename_increment config setting for Upload library.
64 - CI_Loader::_ci_autoloader() is now a protected method.
65 - Added is_unique to the :doc:`Form Validation
66 library <libraries/form_validation>`.
67 - Modified valid_ip() to use PHP's filter_var() when possible (>= PHP 5.2) in the <a href="libraries/form_validation.html">Form Validation</a> library.
Timothy Warren01b56bc2011-10-10 10:45:45 -040068 - Added $config['use_page_numbers'] to the :doc:`Pagination library <libraries/pagination>`, which enables real page numbers in the URI.
Derek Jones8ede1a22011-10-05 13:34:52 -050069 - Added TLS and SSL Encryption for SMTP.
70
71- Core
72
73 - Changed private functions in CI_URI to protected so MY_URI can
74 override them.
75 - Removed CI_CORE boolean constant from CodeIgniter.php (no longer Reactor and Core versions).
76
77Bug fixes for 2.1.0
78-------------------
79
80- Unlink raised an error if cache file did not exist when you try to delete it.
81- Fixed #378 Robots identified as regular browsers by the User Agent
82 class.
83- If a config class was loaded first then a library with the same name
84 is loaded, the config would be ignored.
85- Fixed a bug (Reactor #19) where 1) the 404_override route was being
86 ignored in some cases, and 2) auto-loaded libraries were not
87 available to the 404_override controller when a controller existed
88 but the requested method did not.
89- Fixed a bug (Reactor #89) where MySQL export would fail if the table
90 had hyphens or other non alphanumeric/underscore characters.
91- Fixed a bug (#200) where MySQL queries would be malformed after
92 calling count_all() then db->get()
93- Fixed bug #105 that stopped query errors from being logged unless database debugging was enabled
94- Fixed a bug (#181) where a mis-spelling was in the form validation
95 language file.
96- Fixed a bug (#160) - Removed unneeded array copy in the file cache
97 driver.
98- Fixed a bug (#150) - field_data() now correctly returns column
99 length.
100- Fixed a bug (#8) - load_class() now looks for core classes in
101 APPPATH first, allowing them to be replaced.
102- Fixed a bug (#24) - ODBC database driver called incorrect parent in
103 __construct().
104- Fixed a bug (#85) - OCI8 (Oracle) database escape_str() function did
105 not escape correct.
106- Fixed a bug (#344) - Using schema found in <a href="libraries/sessions.html">Saving Session Data to a Database</a>, system would throw error "user_data does not have a default value" when deleting then creating a session.
107- Fixed a bug (#112) - OCI8 (Oracle) driver didn't pass the configured database character set when connecting.
108- Fixed a bug (#182) - OCI8 (Oracle) driver used to re-execute the statement whenever num_rows() is called.
109- Fixed a bug (#82) - WHERE clause field names in the DB <samp>update_string()</samp> method were not escaped, resulting in failed queries in some cases.
110- Fixed a bug (#89) - Fix a variable type mismatch in DB <samp>display_error()</samp> where an array is expected, but a string could be set instead.
111- Fixed a bug (#467) - Suppress warnings generated from get_magic_quotes_gpc() (deprecated in PHP 5.4)
112- Fixed a bug (#484) - First time _csrf_set_hash() is called, hash is never set to the cookie (in Security.php).
Derek Jones57ccd442011-10-05 13:39:15 -0500113- Fixed a bug (#60) - Added _file_mime_type() method to the `File Uploading Library <libraries/file_uploading>` in order to fix a possible MIME-type injection.
Bo-Yi Wud75e03a2011-10-07 14:44:35 +0800114- Fixed a bug (#537) - Support for all wav type in browser.
Bo-Yi Wu4d7c27e2011-10-15 12:02:32 +0800115- Fixed a bug (#576) - Using ini_get() function to detect if apc is enabled or not.
Derek Jones8ede1a22011-10-05 13:34:52 -0500116
117Version 2.0.3
118=============
119
120Release Date: August 20, 2011
121
122- Security
123
124 - An improvement was made to the MySQL and MySQLi drivers to prevent
125 exposing a potential vector for SQL injection on sites using
126 multi-byte character sets in the database client connection.
127 An incompatibility in PHP versions < 5.2.3 and MySQL < 5.0.7 with
128 *mysql_set_charset()* creates a situation where using multi-byte
129 character sets on these environments may potentially expose a SQL
130 injection attack vector. Latin-1, UTF-8, and other "low ASCII"
131 character sets are unaffected on all environments.
132
133 If you are running or considering running a multi-byte character
134 set for your database connection, please pay close attention to
135 the server environment you are deploying on to ensure you are not
136 vulnerable.
137
138- General Changes
139
140 - Fixed a bug where there was a misspelling within a code comment in
141 the index.php file.
142 - Added Session Class userdata to the output profiler. Additionally,
143 added a show/hide toggle on HTTP Headers, Session Data and Config
144 Variables.
145 - Removed internal usage of the EXT constant.
146 - Visual updates to the welcome_message view file and default error
147 templates. Thanks to `danijelb <https://bitbucket.org/danijelb>`_
148 for the pull request.
149 - Added insert_batch() function to the PostgreSQL database driver.
150 Thanks to epallerols for the patch.
151 - Added "application/x-csv" to mimes.php.
152 - Added CSRF protection URI whitelisting.
Timothy Warren01b56bc2011-10-10 10:45:45 -0400153 - Fixed a bug where :doc:`Email library <libraries/email>`
Derek Jones8ede1a22011-10-05 13:34:52 -0500154 attachments with a "." in the name would using invalid MIME-types.
155 - Added support for
156 pem,p10,p12,p7a,p7c,p7m,p7r,p7s,crt,crl,der,kdb,rsa,cer,sst,csr
157 Certs to mimes.php.
158 - Added support pgp,gpg to mimes.php.
159 - Added support 3gp, 3g2, mp4, wmv, f4v, vlc Video files to
160 mimes.php.
161 - Added support m4a, aac, m4u, xspf, au, ac3, flac, ogg Audio files
162 to mimes.php.
163
164- Helpers
165
166 - Added an optional third parameter to heading() which allows adding
167 html attributes to the rendered heading tag.
168 - form_open() now only adds a hidden (Cross-site Reference Forgery)
169 protection field when the form's action is internal and is set to
170 the post method. (Reactor #165)
171 - Re-worked plural() and singular() functions in the :doc:`Inflector
172 helper <helpers/inflector_helper>` to support considerably
173 more words.
174
175- Libraries
176
177 - Altered Session to use a longer match against the user_agent
178 string. See upgrade notes if using database sessions.
179 - Added $this->db->set_dbprefix() to the :doc:`Database
180 Driver <database/queries>`.
181 - Changed $this->cart->insert() in the :doc:`Cart
182 Library <libraries/cart>` to return the Row ID if a single
183 item was inserted successfully.
184 - Added $this->load->get_var() to the :doc:`Loader
185 library <libraries/loader>` to retrieve global vars set with
186 $this->load->view() and $this->load->vars().
187 - Changed $this->db->having() to insert quotes using escape() rather
188 than escape_str().
189
190Bug fixes for 2.0.3
191-------------------
192
193- Added ENVIRONMENT to reserved constants. (Reactor #196)
194- Changed server check to ensure SCRIPT_NAME is defined. (Reactor #57)
195- Removed APPPATH.'third_party' from the packages autoloader to negate
196 needless file stats if no packages exist or if the developer does not
197 load any other packages by default.
198- Fixed a bug (Reactor #231) where Sessions Library database table
199 example SQL did not contain an index on last_activity. See :doc:`Upgrade
200 Notes <installation/upgrade_203>`.
201- Fixed a bug (Reactor #229) where the Sessions Library example SQL in
202 the documentation contained incorrect SQL.
203- Fixed a bug (Core #340) where when passing in the second parameter to
204 $this->db->select(), column names in subsequent queries would not be
205 properly escaped.
206- Fixed issue #199 - Attributes passed as string does not include a
207 space between it and the opening tag.
208- Fixed a bug where the method $this->cart->total_items() from :doc:`Cart
209 Library <libraries/cart>` now returns the sum of the quantity
210 of all items in the cart instead of your total count.
211- Fixed a bug where not setting 'null' when adding fields in db_forge
212 for mysql and mysqli drivers would default to NULL instead of NOT
213 NULL as the docs suggest.
214- Fixed a bug where using $this->db->select_max(),
215 $this->db->select_min(), etc could throw notices. Thanks to w43l for
216 the patch.
217- Replace checks for STDIN with php_sapi_name() == 'cli' which on the
218 whole is more reliable. This should get parameters in crontab
219 working.
220
221Version 2.0.2
222=============
223
224Release Date: April 7, 2011
225Hg Tag: v2.0.2
226
227- General changes
228
229 - The :doc:`Security library <./libraries/security>` was moved to
230 the core and is now loaded automatically. Please remove your
231 loading calls.
232 - The CI_SHA class is now deprecated. All supported versions of PHP
233 provide a sha1() function.
234 - constants.php will now be loaded from the environment folder if
235 available.
236 - Added language key error logging
237 - Made Environment Support optional. Comment out or delete the
238 constant to stop environment checks.
239 - Added Environment Support for Hooks.
240 - Added CI\_ Prefix to the :doc:`Cache driver <libraries/caching>`.
241 - Added :doc:`CLI usage <./general/cli>` documentation.
242
243- Helpers
244
245 - Removed the previously deprecated dohash() from the :doc:`Security
246 helper <./helpers/security_helper>`; use do_hash() instead.
247 - Changed the 'plural' function so that it doesn't ruin the
248 captalization of your string. It also take into consideration
249 acronyms which are all caps.
250
251- Database
252
253 - $this->db->count_all_results() will now return an integer
254 instead of a string.
255
256Bug fixes for 2.0.2
257-------------------
258
259- Fixed a bug (Reactor #145) where the Output Library had
260 parse_exec_vars set to protected.
261- Fixed a bug (Reactor #80) where is_really_writable would create an
262 empty file when on Windows or with safe_mode enabled.
263- Fixed various bugs with User Guide.
264- Added is_cli_request() method to documentation for :doc:`Input
265 class <libraries/input>`.
266- Added form_validation_lang entries for decimal, less_than and
267 greater_than.
268- `Fixed issue
269 #153 <https://bitbucket.org/ellislab/codeigniter-reactor/issue/153/escape-str-bug-in-mssql-driver>`_
270 Escape Str Bug in MSSQL driver.
271- `Fixed issue
272 #172 <https://bitbucket.org/ellislab/codeigniter-reactor/issue/172/bug-in-chrome-and-form_open-in-201>`_
273 Google Chrome 11 posts incorrectly when action is empty.
274
275Version 2.0.1
276=============
277
278Release Date: March 15, 2011
279Hg Tag: v2.0.1
280
281- General changes
282
283 - Added $config['cookie_secure'] to the config file to allow
284 requiring a secure (HTTPS) in order to set cookies.
285 - Added the constant CI_CORE to help differentiate between Core:
286 TRUE and Reactor: FALSE.
287 - Added an ENVIRONMENT constant in index.php, which affects PHP
288 error reporting settings, and optionally, which configuration
289 files are loaded (see below). Read more on the `Handling
290 Environments <general/environments>` page.
291 - Added support for
292 :ref:`environment-specific <config-environments>`
293 configuration files.
294
295- Libraries
296
297 - Added decimal, less_than and greater_than rules to the `Form
298 validation Class <libraries/form_validation>`.
299 - :doc:`Input Class <libraries/input>` methods post() and get()
300 will now return a full array if the first argument is not
301 provided.
302 - Secure cookies can now be made with the set_cookie() helper and
303 :doc:`Input Class <libraries/input>` method.
304 - Added set_content_type() to :doc:`Output
305 Class <libraries/output>` to set the output Content-Type
306 HTTP header based on a MIME Type or a config/mimes.php array key.
307 - :doc:`Output Class <libraries/output>` will now support method
308 chaining.
309
310- Helpers
311
312 - Changed the logic for form_open() in :doc:`Form
313 helper <helpers/form_helper>`. If no value is passed it will
314 submit to the current URL.
315
316Bug fixes for 2.0.1
317-------------------
318
319- CLI requests can now be run from any folder, not just when CD'ed next
320 to index.php.
321- Fixed issue #41: Added audio/mp3 mime type to mp3.
322- Fixed a bug (Core #329) where the file caching driver referenced the
323 incorrect cache directory.
324- Fixed a bug (Reactor #69) where the SHA1 library was named
325 incorrectly.
326
Derek Jonescaa1db62011-10-17 21:17:21 -0500327.. _2.0.0-changelog:
328
Derek Jones8ede1a22011-10-05 13:34:52 -0500329Version 2.0.0
330=============
331
332Release Date: January 28, 2011
333Hg Tag: v2.0.0
334
335- General changes
336
337 - PHP 4 support is removed. CodeIgniter now requires PHP 5.1.6.
338 - Scaffolding, having been deprecated for a number of versions, has
339 been removed.
340 - Plugins have been removed, in favor of Helpers. The CAPTCHA plugin
341 has been converted to a Helper and
342 :doc:`documented <./helpers/captcha_helper>`. The JavaScript
343 calendar plugin was removed due to the ready availability of great
344 JavaScript calendars, particularly with jQuery.
345 - Added new special Library type:
346 :doc:`Drivers <./general/drivers>`.
347 - Added full query-string support. See the config file for details.
348 - Moved the application folder outside of the system folder.
349 - Moved system/cache and system/logs directories to the application
350 directory.
351 - Added routing overrides to the main index.php file, enabling the
352 normal routing to be overridden on a per "index" file basis.
353 - Added the ability to set config values (or override config values)
354 directly from data set in the main index.php file. This allows a
355 single application to be used with multiple front controllers,
356 each having its own config values.
357 - Added $config['directory_trigger'] to the config file so that a
358 controller sub-directory can be specified when running _GET
359 strings instead of URI segments.
360 - Added ability to set "Package" paths - specific paths where the
361 Loader and Config classes should try to look first for a requested
362 file. This allows distribution of sub-applications with their own
363 libraries, models, config files, etc. in a single "package"
364 directory. See the :doc:`Loader class <libraries/loader>`
365 documentation for more details.
366 - In-development code is now hosted at
367 `BitBucket <http://bitbucket.org/ellislab/codeigniter-reactor/>`_.
368 - Removed the deprecated Validation Class.
369 - Added CI\_ Prefix to all core classes.
370 - Package paths can now be set in application/config/autoload.php.
371 - `Upload library <libraries/file_uploading>` file_name can
372 now be set without an extension, the extension will be taken from
373 the uploaded file instead of the given name.
374 - In :doc:`Database Forge <database/forge>` the name can be omitted
375 from $this->dbforge->modify_column()'s 2nd param if you aren't
376 changing the name.
377 - $config['base_url'] is now empty by default and will guess what
378 it should be.
379 - Enabled full Command Line Interface compatibility with
380 config['uri_protocol'] = 'CLI';.
381
382- Libraries
383
384 - Added a :doc:`Cache driver <libraries/caching>` with APC,
385 memcached, and file-based support.
386 - Added $prefix, $suffix and $first_url properties to :doc:`Pagination
387 library <./libraries/pagination>`.
388 - Added the ability to suppress first, previous, next, last, and
389 page links by setting their values to FALSE in the :doc:`Pagination
390 library <./libraries/pagination>`.
391 - Added :doc:`Security library <./libraries/security>`, which now
392 contains the xss_clean function, filename_security function and
393 other security related functions.
394 - Added CSRF (Cross-site Reference Forgery) protection to the
395 :doc:`Security library <./libraries/security>`.
396 - Added $parse_exec_vars property to Output library.
397 - Added ability to enable / disable individual sections of the
398 :doc:`Profiler <general/profiling>`
399 - Added a wildcard option $config['allowed_types'] = '\*' to the
400 :doc:`File Uploading Class <./libraries/file_uploading>`.
401 - Added an 'object' config variable to the XML-RPC Server library so
402 that one can specify the object to look for requested methods,
403 instead of assuming it is in the $CI superobject.
404 - Added "is_object" into the list of unit tests capable of being
405 run.
406 - Table library will generate an empty cell with a blank string, or
407 NULL value.
408 - Added ability to set tag attributes for individual cells in the
409 Table library
410 - Added a parse_string() method to the :doc:`Parser
411 Class <libraries/parser>`.
412 - Added HTTP headers and Config information to the
413 :doc:`Profiler <general/profiling>` output.
414 - Added Chrome and Flock to the list of detectable browsers by
415 browser() in the :doc:`User Agent Class <libraries/user_agent>`.
416 - The :doc:`Unit Test Class <libraries/unit_testing>` now has an
417 optional "notes" field available to it, and allows for discrete
418 display of test result items using
419 $this->unit->set_test_items().
420 - Added a $xss_clean class variable to the XMLRPC library, enabling
421 control over the use of the Security library's xss_clean()
422 method.
423 - Added a download() method to the :doc:`FTP
424 library <libraries/ftp>`
425 - Changed do_xss_clean() to return FALSE if the uploaded file
426 fails XSS checks.
427 - Added stripslashes() and trim()ing of double quotes from $_FILES
428 type value to standardize input in Upload library.
429 - Added a second parameter (boolean) to
430 $this->zip->read_dir('/path/to/directory', FALSE) to remove the
431 preceding trail of empty folders when creating a Zip archive. This
432 example would contain a zip with "directory" and all of its
433 contents.
434 - Added ability in the Image Library to handle PNG transparency for
435 resize operations when using the GD lib.
436 - Modified the Session class to prevent use if no encryption key is
437 set in the config file.
438 - Added a new config item to the Session class
439 sess_expire_on_close to allow sessions to auto-expire when the
440 browser window is closed.
441 - Improved performance of the Encryption library on servers where
442 Mcrypt is available.
443 - Changed the default encryption mode in the Encryption library to
444 CBC.
445 - Added an encode_from_legacy() method to provide a way to
446 transition encrypted data from CodeIgniter 1.x to CodeIgniter 2.x.
447 Please see the :doc:`upgrade
448 instructions <./installation/upgrade_200>` for details.
449 - Altered Form_Validation library to allow for method chaining on
450 set_rules(), set_message() and set_error_delimiters()
451 functions.
452 - Altered Email Library to allow for method chaining.
453 - Added request_headers(), get_request_header() and
454 is_ajax_request() to the input class.
455 - Altered :doc:`User agent library <libraries/user_agent>` so that
456 is_browser(), is_mobile() and is_robot() can optionally check
457 for a specific browser or mobile device.
458 - Altered :doc:`Input library <libraries/input>` so that post() and
459 get() will return all POST and GET items (respectively) if there
460 are no parameters passed in.
461
462- Database
463
464 - :doc:`database configuration <./database/configuration>`.
465 - Added autoinit value to :doc:`database
466 configuration <./database/configuration>`.
467 - Added stricton value to :doc:`database
468 configuration <./database/configuration>`.
469 - Added database_exists() to the :doc:`Database Utilities
470 Class <database/utilities>`.
471 - Semantic change to db->version() function to allow a list of
472 exceptions for databases with functions to return version string
473 instead of specially formed SQL queries. Currently this list only
474 includes Oracle and SQLite.
475 - Fixed a bug where driver specific table identifier protection
476 could lead to malformed queries in the field_data() functions.
477 - Fixed a bug where an undefined class variable was referenced in
478 database drivers.
479 - Modified the database errors to show the filename and line number
480 of the problematic query.
481 - Removed the following deprecated functions: orwhere, orlike,
482 groupby, orhaving, orderby, getwhere.
483 - Removed deprecated _drop_database() and _create_database()
484 functions from the db utility drivers.
485 - Improved dbforge create_table() function for the Postgres driver.
486
487- Helpers
488
489 - Added convert_accented_characters() function to :doc:`text
490 helper <./helpers/text_helper>`.
491 - Added accept-charset to the list of inserted attributes of
492 form_open() in the :doc:`Form Helper <helpers/form_helper>`.
493 - Deprecated the dohash() function in favour of do_hash() for
494 naming consistency.
495 - Non-backwards compatible change made to get_dir_file_info() in
496 the :doc:`File Helper <helpers/file_helper>`. No longer recurses
497 by default so as to encourage responsible use (this function can
498 cause server performance issues when used without caution).
499 - Modified the second parameter of directory_map() in the
500 :doc:`Directory Helper <helpers/directory_helper>` to accept an
501 integer to specify recursion depth.
502 - Modified delete_files() in the :doc:`File
503 Helper <helpers/file_helper>` to return FALSE on failure.
504 - Added an optional second parameter to byte_format() in the
505 :doc:`Number Helper <helpers/number_helper>` to allow for decimal
506 precision.
507 - Added alpha, and sha1 string types to random_string() in the
508 :doc:`String Helper <helpers/string_helper>`.
509 - Modified prep_url() so as to not prepend http:// if the supplied
510 string already has a scheme.
511 - Modified get_file_info in the file helper, changing filectime()
512 to filemtime() for dates.
513 - Modified smiley_js() to add optional third parameter to return
514 only the javascript with no script tags.
515 - The img() function of the :doc:`HTML
516 helper <./helpers/html_helper>` will now generate an empty
517 string as an alt attribute if one is not provided.
518 - If CSRF is enabled in the application config file, form_open()
519 will automatically insert it as a hidden field.
520 - Added sanitize_filename() into the :doc:`Security
521 helper <./helpers/security_helper>`.
522 - Added ellipsize() to the :doc:`Text
523 Helper <./helpers/text_helper>`
524 - Added elements() to the :doc:`Array
525 Helper <./helpers/array_helper>`
526
527- Other Changes
528
529 - Added an optional second parameter to show_404() to disable
530 logging.
531 - Updated loader to automatically apply the sub-class prefix as an
532 option when loading classes. Class names can be prefixed with the
533 standard "CI\_" or the same prefix as the subclass prefix, or no
534 prefix at all.
535 - Increased randomness with is_really_writable() to avoid file
536 collisions when hundreds or thousands of requests occur at once.
537 - Switched some DIR_WRITE_MODE constant uses to FILE_WRITE_MODE
538 where files and not directories are being operated on.
539 - get_mime_by_extension() is now case insensitive.
540 - Added "default" to the list :doc:`Reserved
541 Names <general/reserved_names>`.
542 - Added 'application/x-msdownload' for .exe files and
543 ''application/x-gzip-compressed' for .tgz files to
544 config/mimes.php.
545 - Updated the output library to no longer compress output or send
546 content-length headers if the server runs with
547 zlib.output_compression enabled.
548 - Eliminated a call to is_really_writable() on each request unless
549 it is really needed (Output caching)
550 - Documented append_output() in the :doc:`Output
551 Class <libraries/output>`.
552 - Documented a second argument in the decode() function for the
553 :doc:`Encryption Class <libraries/encryption>`.
554 - Documented db->close().
555 - Updated the router to support a default route with any number of
556 segments.
557 - Moved _remove_invisible_characters() function from the
558 :doc:`Security Library <libraries/security>` to :doc:`common
559 functions. <general/common_functions>`
560 - Added audio/mpeg3 as a valid mime type for MP3.
561
562Bug fixes for 2.0.0
563-------------------
564
565- Fixed a bug where you could not change the User-Agent when sending
566 email.
567- Fixed a bug where the Output class would send incorrect cached output
568 for controllers implementing their own _output() method.
569- Fixed a bug where a failed query would not have a saved query
570 execution time causing errors in the Profiler
571- Fixed a bug that was writing log entries when multiple identical
572 helpers and plugins were loaded.
573- Fixed assorted user guide typos or examples (#10693, #8951, #7825,
574 #8660, #7883, #6771, #10656).
575- Fixed a language key in the profiler: "profiler_no_memory_usage"
576 to "profiler_no_memory".
577- Fixed an error in the Zip library that didn't allow downloading on
578 PHP 4 servers.
579- Fixed a bug in the Form Validation library where fields passed as
580 rule parameters were not being translated (#9132)
581- Modified inflector helper to properly pluralize words that end in
582 'ch' or 'sh'
583- Fixed a bug in xss_clean() that was not allowing hyphens in query
584 strings of submitted URLs.
585- Fixed bugs in get_dir_file_info() and get_file_info() in the
586 File Helper with recursion, and file paths on Windows.
587- Fixed a bug where Active Record override parameter would not let you
588 disable Active Record if it was enabled in your database config file.
589- Fixed a bug in reduce_double_slashes() in the String Helper to
590 properly remove duplicate leading slashes (#7585)
591- Fixed a bug in values_parsing() of the XML-RPC library which
592 prevented NULL variables typed as 'string' from being handled
593 properly.
594- Fixed a bug were form_open_multipart() didn't accept string
595 attribute arguments (#10930).
596- Fixed a bug (#10470) where get_mime_by_extension() was case
597 sensitive.
598- Fixed a bug where some error messages for the SQLite and Oracle
599 drivers would not display.
600- Fixed a bug where files created with the Zip Library would result in
601 file creation dates of 1980.
602- Fixed a bug in the Session library that would result in PHP error
603 when attempting to store values with objects.
604- Fixed a bug where extending the Controller class would result in a
605 fatal PHP error.
606- Fixed a PHP Strict Standards Error in the index.php file.
607- Fixed a bug where getimagesize() was being needlessly checked on
608 non-image files in is_allowed_type().
609- Fixed a bug in the Encryption library where an empty key was not
610 triggering an error.
611- Fixed a bug in the Email library where CC and BCC recipients were not
612 reset when using the clear() method (#109).
613- Fixed a bug in the URL Helper where prep_url() could cause a PHP
614 error on PHP versions < 5.1.2.
615- Added a log message in core/output if the cache directory config
616 value was not found.
617- Fixed a bug where multiple libraries could not be loaded by passing
618 an array to load->library()
619- Fixed a bug in the html helper where too much white space was
620 rendered between the src and alt tags in the img() function.
621- Fixed a bug in the profilers _compile_queries() function.
622- Fixed a bug in the date helper where the DATE_ISO8601 variable was
623 returning an incorrectly formatted date string.
624
625Version 1.7.2
626=============
627
628Release Date: September 11, 2009
629Hg Tag: v1.7.2
630
631- Libraries
632
633 - Added a new :doc:`Cart Class <libraries/cart>`.
634 - Added the ability to pass $config['file_name'] for the :doc:`File
635 Uploading Class <libraries/file_uploading>` and rename the
636 uploaded file.
637 - Changed order of listed user-agents so Safari would more
638 accurately report itself. (#6844)
639
640- Database
641
642 - Switched from using gettype() in escape() to is\_* methods, since
643 future PHP versions might change its output.
644 - Updated all database drivers to handle arrays in escape_str()
645 - Added escape_like_str() method for escaping strings to be used
646 in LIKE conditions
647 - Updated Active Record to utilize the new LIKE escaping mechanism.
648 - Added reconnect() method to DB drivers to try to keep alive /
649 reestablish a connection after a long idle.
650 - Modified MSSQL driver to use mssql_get_last_message() for error
651 messages.
652
653- Helpers
654
655 - Added form_multiselect() to the :doc:`Form
656 helper <helpers/form_helper>`.
657 - Modified form_hidden() in the :doc:`Form
658 helper <helpers/form_helper>` to accept multi-dimensional
659 arrays.
660 - Modified form_prep() in the :doc:`Form
661 helper <helpers/form_helper>` to keep track of prepped
662 fields to avoid multiple prep/mutation from subsequent calls which
663 can occur when using Form Validation and form helper functions to
664 output form fields.
665 - Modified directory_map() in the :doc:`Directory
666 helper <helpers/directory_helper>` to allow the inclusion of
667 hidden files, and to return FALSE on failure to read directory.
668 - Modified the :doc:`Smiley helper <helpers/smiley_helper>` to work
669 with multiple fields and insert the smiley at the last known
670 cursor position.
671
672- General
673
674 - Compatible with PHP 5.3.0
675 - Modified :doc:`show_error() <general/errors>` to allow sending
676 of HTTP server response codes.
677 - Modified :doc:`show_404() <general/errors>` to send 404 status
678 code, removing non-CGI compatible header() statement from
679 error_404.php template.
680 - Added set_status_header() to the :doc:`Common
681 functions <general/common_functions>` to allow use when the
682 Output class is unavailable.
683 - Added is_php() to :doc:`Common
684 functions <general/common_functions>` to facilitate PHP
685 version comparisons.
686 - Added 2 CodeIgniter "cheatsheets" (thanks to DesignFellow.com for
687 this contribution).
688
689Bug fixes for 1.7.2
690-------------------
691
692- Fixed assorted user guide typos or examples (#6743, #7214, #7516,
693 #7287, #7852, #8224, #8324, #8349).
694- Fixed a bug in the Form Validation library where multiple callbacks
695 weren't working (#6110)
696- doctype helper default value was missing a "1".
697- Fixed a bug in the language class when outputting an error for an
698 unfound file.
699- Fixed a bug in the Calendar library where the shortname was output
700 for "May".
701- Fixed a bug with ORIG_PATH_INFO that was allowing URIs of just a
702 slash through.
703- Fixed a fatal error in the Oracle and ODBC drivers (#6752)
704- Fixed a bug where xml_from_result() was checking for a nonexistent
705 method.
706- Fixed a bug where Database Forge's add_column and modify_column
707 were not looping through when sent multiple fields.
708- Fixed a bug where the File Helper was using '/' instead of the
709 DIRECTORY_SEPARATOR constant.
710- Fixed a bug to prevent PHP errors when attempting to use sendmail on
711 servers that have manually disabled the PHP popen() function.
712- Fixed a bug that would cause PHP errors in XML-RPC data if the PHP
713 data type did not match the specified XML-RPC type.
714- Fixed a bug in the XML-RPC class with parsing dateTime.iso8601 data
715 types.
716- Fixed a case sensitive string replacement in xss_clean()
717- Fixed a bug in form_textarea() where form data was not prepped
718 correctly.
719- Fixed a bug in form_prep() causing it to not preserve entities in
720 the user's original input when called back into a form element
721- Fixed a bug in _protect_identifiers() where the swap prefix
722 ($swap_pre) was not being observed.
723- Fixed a bug where the 400 status header sent with the 'disallowed URI
724 characters' was not compatible with CGI environments.
725- Fixed a bug in the typography class where heading tags could have
726 paragraph tags inserted when using auto_typography().
727
728Version 1.7.1
729=============
730
731Release Date: February 10, 2009
732Hg Tag: 1.7.1
733
734- Libraries
735
736 - Fixed an arbitrary script execution security flaw (#6068) in the
737 Form Validation library (thanks to hkk)
738 - Changed default current page indicator in the Pagination library
739 to use <strong> instead of <b>
740 - A "HTTP/1.1 400 Bad Request" header is now sent when disallowed
741 characters are encountered.
742 - Added <big>, <small>, <q>, and <tt> to the Typography parser's
743 inline elements.
744 - Added more accurate error reporting for the Email library when
745 using sendmail.
746 - Removed a strict type check from the rotate() function of the
747 :doc:`Image Manipulation Class <libraries/image_lib>`.
748 - Added enhanced error checking in file saving in the Image library
749 when using the GD lib.
750 - Added an additional newline between multipart email headers and
751 the MIME message text for better compatibility with a variety of
752 MUAs.
753 - Made modest improvements to efficiency and accuracy of
754 explode_name() in the Image lib.
755
756- Database
757
758 - Added where_in to the list of expected arguments received by
759 delete().
760
761- Helpers
762
763 - Added the ability to have optgroups in form_dropdown() within the
764 :doc:`form helper <helpers/form_helper>`.
765 - Added a doctype() function to the :doc:`HTML
766 helper <helpers/html_helper>`.
767 - Added ability to force lowercase for url_title() in the :doc:`URL
768 helper <helpers/url_helper>`.
769 - Changed the default "type" of form_button() to "button" from
770 "submit" in the :doc:`form helper <helpers/form_helper>`.
771 - Changed redirect() in the URL helper to allow redirections to URLs
772 outside of the CI site.
773 - Updated get_cookie() to try to fetch the cookie using the global
774 cookie prefix if the requested cookie name doesn't exist.
775
776- Other Changes
777
778 - Improved security in xss_clean() to help prevent attacks
779 targeting Internet Explorer.
780 - Added 'application/msexcel' to config/mimes.php for .xls files.
781 - Added 'proxy_ips' config item to whitelist reverse proxy servers
782 from which to trust the HTTP_X_FORWARDED_FOR header to to
783 determine the visitor's IP address.
784 - Improved accuracy of Upload::is_allowed_filetype() for images
785 (#6715)
786
787Bug fixes for 1.7.1
788-------------------
789
790- Database
791
792 - Fixed a bug when doing 'random' on order_by() (#5706).
793 - Fixed a bug where adding a primary key through Forge could fail
794 (#5731).
795 - Fixed a bug when using DB cache on multiple databases (#5737).
796 - Fixed a bug where TRUNCATE was not considered a "write" query
797 (#6619).
798 - Fixed a bug where csv_from_result() was checking for a
799 nonexistent method.
800 - Fixed a bug _protect_identifiers() where it was improperly
801 removing all pipe symbols from items
802
803- Fixed assorted user guide typos or examples (#5998, #6093, #6259,
804 #6339, #6432, #6521).
805- Fixed a bug in the MySQLi driver when no port is specified
806- Fixed a bug (#5702), in which the field label was not being fetched
807 properly, when "matching" one field to another.
808- Fixed a bug in which identifers were not being escaped properly when
809 reserved characters were used.
810- Fixed a bug with the regular expression used to protect submitted
811 paragraph tags in auto typography.
812- Fixed a bug where double dashes within tag attributes were being
813 converted to em dash entities.
814- Fixed a bug where double spaces within tag attributes were being
815 converted to non-breaking space entities.
816- Fixed some accuracy issues with curly quotes in
817 Typography::format_characters()
818- Changed a few docblock comments to reflect actual return values.
819- Fixed a bug with high ascii characters in subject and from email
820 headers.
821- Fixed a bug in xss_clean() where whitespace following a validated
822 character entity would not be preserved.
823- Fixed a bug where HTML comments and <pre> tags were being parsed in
824 Typography::auto_typography().
825- Fixed a bug with non-breaking space cleanup in
826 Typography::auto_typography().
827- Fixed a bug in database escaping where a compound statement (ie:
828 SUM()) wasn't handled correctly with database prefixes.
829- Fixed a bug when an opening quote is preceded by a paragraph tag and
830 immediately followed by another tag.
831- Fixed a bug in the Text Helper affecting some locales where
832 word_censor() would not work on words beginning or ending with an
833 accented character.
834- Fixed a bug in the Text Helper character limiter where the provided
835 limit intersects the last word of the string.
836- Fixed a bug (#6342) with plural() in the Inflection helper with words
837 ending in "y".
838- Fixed bug (#6517) where Routed URI segments returned by
839 URI::rsegment() method were incorrect for the default controller.
840- Fixed a bug (#6706) in the Security Helper where xss_clean() was
841 using a deprecated second argument.
842- Fixed a bug in the URL helper url_title() function where trailing
843 periods were allowed at the end of a URL.
844- Fixed a bug (#6669) in the Email class when CRLF's are used for the
845 newline character with headers when used with the "mail" protocol.
846- Fixed a bug (#6500) where URI::A_filter_uri() was exit()ing an
847 error instead of using show_error().
848- Fixed a bug (#6592) in the File Helper where get_dir_file_info()
849 where recursion was not occurring properly.
850- Tweaked Typography::auto_typography() for some edge-cases.
851
852Version 1.7
853===========
854
855Release Date: October 23, 2008
856Hg Tag: 1.7.0
857
858- Libraries
859
860 - Added a new :doc:`Form Validation
861 Class <libraries/form_validation>`. It simplifies setting
862 rules and field names, supports arrays as field names, allows
863 groups of validation rules to be saved in a config file, and adds
864 some helper functions for use in view files. **Please note that
865 the old Validation class is now deprecated**. We will leave it in
866 the library folder for some time so that existing applications
867 that use it will not break, but you are encouraged to migrate to
868 the new version.
869 - Updated the :doc:`Sessions class <libraries/sessions>` so that
870 any custom data being saved gets stored to a database rather than
871 the session cookie (assuming you are using a database to store
872 session data), permitting much more data to be saved.
873 - Added the ability to store libraries in subdirectories within
874 either the main "libraries" or the local application "libraries"
875 folder. Please see the :doc:`Loader class <libraries/loader>` for
876 more info.
877 - Added the ability to assign library objects to your own variable
878 names when you use $this->load->library(). Please see the :doc:`Loader
879 class <libraries/loader>` for more info.
880 - Added controller class/method info to :doc:`Profiler
881 class <general/profiling>` and support for multiple database
882 connections.
883 - Improved the "auto typography" feature and moved it out of the
884 helper into its own :doc:`Typography
885 Class <libraries/typography>`.
886 - Improved performance and accuracy of xss_clean(), including
887 reduction of false positives on image/file tests.
888 - Improved :doc:`Parser class <./libraries/parser>` to allow
889 multiple calls to the parse() function. The output of each is
890 appended in the output.
891 - Added max_filename option to set a file name length limit in the
892 :doc:`File Upload Class <libraries/file_uploading>`.
893 - Added set_status_header() function to :doc:`Output
894 class <libraries/output>`.
895 - Modified :doc:`Pagination <libraries/pagination>` class to only
896 output the "First" link when the link for page one would not be
897 shown.
898 - Added support for mb_strlen in the :doc:`Form
899 Validation <libraries/form_validation>` class so that
900 multi-byte languages will calculate string lengths properly.
901
902- Database
903
904 - Improved Active Record class to allow full path column and table
905 names: hostname.database.table.column. Also improved the alias
906 handling.
907 - Improved how table and column names are escaped and prefixed. It
908 now honors full path names when adding prefixes and escaping.
909 - Added Active Record caching feature to "update" and "delete"
910 functions.
911 - Added removal of non-printing control characters in escape_str()
912 of DB drivers that do not have native PHP escaping mechanisms
913 (mssql, oci8, odbc), to avoid potential SQL errors, and possible
914 sources of SQL injection.
915 - Added port support to MySQL, MySQLi, and MS SQL database drivers.
916 - Added driver name variable in each DB driver, based on bug report
917 #4436.
918
919- Helpers
920
921 - Added several new "setting" functions to the :doc:`Form
922 helper <helpers/form_helper>` that allow POST data to be
923 retrieved and set into forms. These are intended to be used on
924 their own, or with the new :doc:`Form Validation
925 Class <libraries/form_validation>`.
926 - Added current_url() and uri_segments() to :doc:`URL
927 helper <helpers/url_helper>`.
928 - Altered auto_link() in the :doc:`URL
929 helper <helpers/url_helper>` so that email addresses with
930 "+" included will be linked.
931 - Added meta() function to :doc:`HTML
932 helper <helpers/html_helper>`.
933 - Improved accuracy of calculations in :doc:`Number
934 helper <helpers/number_helper>`.
935 - Removed added newlines ("\\n") from most form and html helper
936 functions.
937 - Tightened up validation in the :doc:`Date
938 helper <helpers/date_helper>` function human_to_unix(),
939 and eliminated the POSIX regex.
940 - Updated :doc:`Date helper <helpers/date_helper>` to match the
941 world's current time zones and offsets.
942 - Modified url_title() in the :doc:`URL
943 helper <helpers/url_helper>` to remove characters and digits
944 that are part of character entities, to allow dashes, underscores,
945 and periods regardless of the $separator, and to allow uppercase
946 characters.
947 - Added support for arbitrary attributes in anchor_popup() of the
948 :doc:`URL helper <helpers/url_helper>`.
949
950- Other Changes
951
952 - Added :doc:`PHP Style Guide <./general/styleguide>` to docs.
953 - Added sanitization in xss_clean() for a deprecated HTML tag that
954 could be abused in user input in Internet Explorer.
955 - Added a few openxml document mime types, and an additional mobile
956 agent to mimes.php and user_agents.php respectively.
957 - Added a file lock check during caching, before trying to write to
958 the file.
959 - Modified Cookie key cleaning to unset a few troublesome key names
960 that can be present in certain environments, preventing CI from
961 halting execution.
962 - Changed the output of the profiler to use style attribute rather
963 than clear, and added the id "codeigniter_profiler" to the
964 container div.
965
966Bug fixes for 1.7.0
967-------------------
968
969- Fixed bug in xss_clean() that could remove some desirable tag
970 attributes.
971- Fixed assorted user guide typos or examples (#4807, #4812, #4840,
972 #4862, #4864, #4899, #4930, #5006, #5071, #5158, #5229, #5254,
973 #5351).
974- Fixed an edit from 1.6.3 that made the $robots array in
975 user_agents.php go poof.
976- Fixed a bug in the :doc:`Email library <libraries/email>` with
977 quoted-printable encoding improperly encoding space and tab
978 characters.
979- Modified XSS sanitization to no longer add semicolons after &[single
980 letter], such as in M&M's, B&B, etc.
981- Modified XSS sanitization to no longer strip XHTML image tags of
982 closing slashes.
983- Fixed a bug in the Session class when database sessions are used
984 where upon session update all userdata would be errantly written to
985 the session cookie.
986- Fixed a bug (#4536) in backups with the MySQL driver where some
987 legacy code was causing certain characters to be double escaped.
988- Fixed a routing bug (#4661) that occurred when the default route
989 pointed to a subfolder.
990- Fixed the spelling of "Dhaka" in the timezone_menu() function of the
991 :doc:`Date helper. <helpers/date_helper>`
992- Fixed the spelling of "raspberry" in config/smileys.php.
993- Fixed incorrect parenthesis in form_open() function (#5135).
994- Fixed a bug that was ignoring case when comparing controller methods
995 (#4560).
996- Fixed a bug (#4615) that was not setting SMTP authorization settings
997 when using the initialize function.
998- Fixed a bug in highlight_code() in the :doc:`Text
999 helper <helpers/text_helper>` that would leave a stray </span>
1000 in certain cases.
1001- Fixed Oracle bug (#3306) that was preventing multiple queries in one
1002 action.
1003- Fixed ODBC bug that was ignoring connection params due to its use of
1004 a constructor.
1005- Fixed a DB driver bug with num_rows() that would cause an error with
1006 the Oracle driver.
1007- Fixed MS SQL bug (#4915). Added brackets around database name in MS
1008 SQL driver when selecting the database, in the event that reserved
1009 characters are used in the name.
1010- Fixed a DB caching bug (4718) in which the path was incorrect when no
1011 URI segments were present.
1012- Fixed Image_lib class bug #4562. A path was not defined for NetPBM.
1013- Fixed Image_lib class bug #4532. When cropping an image with
1014 identical height/width settings on output, a copy is made.
1015- Fixed DB_driver bug (4900), in which a database error was not being
1016 logged correctly.
1017- Fixed DB backup bug in which field names were not being escaped.
1018- Fixed a DB Active Record caching bug in which multiple calls to
1019 cached data were not being honored.
1020- Fixed a bug in the Session class that was disallowing slashes in the
1021 serialized array.
1022- Fixed a Form Validation bug in which the "isset" error message was
1023 being trigged by the "required" rule.
1024- Fixed a spelling error in a Loader error message.
1025- Fixed a bug (5050) with IP validation with empty segments.
1026- Fixed a bug in which the parser was being greedy if multiple
1027 identical sets of tags were encountered.
1028
1029Version 1.6.3
1030=============
1031
1032Release Date: June 26, 2008
1033Hg Tag: v1.6.3
1034
1035Version 1.6.3 is a security and maintenance release and is recommended
1036for all users.
1037
1038- Database
1039
1040 - Modified MySQL/MySQLi Forge class to give explicit names to keys
1041 - Added ability to set multiple column non-primary keys to the
1042 :doc:`Forge class <database/forge>`
1043 - Added ability to set additional database config values in :doc:`DSN
1044 connections <database/connecting>` via the query string.
1045
1046- Libraries
1047
1048 - Set the mime type check in the :doc:`Upload
1049 class <libraries/file_uploading>` to reference the global
1050 mimes variable.
1051 - Added support for query strings to the :doc:`Pagination
1052 class <libraries/pagination>`, automatically detected or
1053 explicitly declared.
1054 - Added get_post() to the :doc:`Input class <libraries/input>`.
1055 - Documented get() in the :doc:`Input class <libraries/input>`.
1056 - Added the ability to automatically output language items as form
1057 labels in the :doc:`Language class <libraries/language>`.
1058
1059- Helpers
1060
1061 - Added a :doc:`Language helper <helpers/language_helper>`.
1062 - Added a :doc:`Number helper <helpers/number_helper>`.
1063 - :doc:`Form helper <helpers/form_helper>` refactored to allow
1064 form_open() and form_fieldset() to accept arrays or strings as
1065 arguments.
1066
1067- Other changes
1068
1069 - Improved security in xss_clean().
1070 - Removed an unused Router reference in _display_cache().
1071 - Added ability to :doc:`use xss_clean() to test
1072 images <libraries/input>` for XSS, useful for upload
1073 security.
1074 - Considerably expanded list of mobile user-agents in
1075 config/user_agents.php.
1076 - Charset information in the userguide has been moved above title
1077 for internationalization purposes (#4614).
1078 - Added "Using Associative Arrays In a Request Parameter" example to
1079 the :doc:`XMLRPC userguide page <libraries/xmlrpc>`.
1080 - Removed maxlength and size as automatically added attributes of
1081 form_input() in the :doc:`form helper <helpers/form_helper>`.
1082 - Documented the language file use of byte_format() in the :doc:`number
1083 helper <helpers/number_helper>`.
1084
1085Bug fixes for 1.6.3
1086-------------------
1087
1088- Added a language key for valid_emails in validation_lang.php.
1089- Amended fixes for bug (#3419) with parsing DSN database connections.
1090- Moved the _has_operators() function (#4535) into DB_driver from
1091 DB_active_rec.
1092- Fixed a syntax error in upload_lang.php.
1093- Fixed a bug (#4542) with a regular expression in the Image library.
1094- Fixed a bug (#4561) where orhaving() wasn't properly passing values.
1095- Removed some unused variables from the code (#4563).
1096- Fixed a bug where having() was not adding an = into the statement
1097 (#4568).
1098- Fixed assorted user guide typos or examples (#4574, #4706).
1099- Added quoted-printable headers to Email class when the multi-part
1100 override is used.
1101- Fixed a double opening <p> tag in the index pages of each system
1102 directory.
1103
1104Version 1.6.2
1105=============
1106
1107Release Date: May 13, 2008
1108Hg Tag: 1.6.2
1109
1110- Active Record
1111
1112 - Added the ability to prevent escaping in having() clauses.
1113 - Added rename_table() into :doc:`DBForge <./database/forge>`.
1114 - Fixed a bug that wasn't allowing escaping to be turned off if the
1115 value of a query was NULL.
1116 - DB Forge is now assigned to any models that exist after loading
1117 (#3457).
1118
1119- Database
1120
1121 - Added :doc:`Strict Mode <./database/transactions>` to database
1122 transactions.
1123 - Escape behaviour in where() clauses has changed; values in those
1124 with the "FALSE" argument are no longer escaped (ie: quoted).
1125
1126- Config
1127
1128 - Added 'application/vnd.ms-powerpoint' to list of mime types.
1129 - Added 'audio/mpg' to list of mime types.
1130 - Added new user-modifiable file constants.php containing file mode
1131 and fopen constants.
1132 - Added the ability to set CRLF settings via config in the
1133 :doc:`Email <libraries/email>` class.
1134
1135- Libraries
1136
1137 - Added increased security for filename handling in the Upload
1138 library.
1139 - Added increased security for sessions for client-side data
1140 tampering.
1141 - The MySQLi forge class is now in sync with MySQL forge.
1142 - Added the ability to set CRLF settings via config in the
1143 :doc:`Email <libraries/email>` class.
1144 - :doc:`Unit Testing <libraries/unit_testing>` results are now
1145 colour coded, and a change was made to the default template of
1146 results.
1147 - Added a valid_emails rule to the Validation class.
1148 - The :doc:`Zip class <libraries/zip>` now exits within download().
1149 - The :doc:`Zip class <libraries/zip>` has undergone a substantial
1150 re-write for speed and clarity (thanks stanleyxu for the hard work
1151 and code contribution in bug report #3425!)
1152
1153- Helpers
1154
1155 - Added a Compatibility
1156 Helper for using some common
1157 PHP 5 functions safely in applications that might run on PHP 4
1158 servers (thanks Seppo for the hard work and code contribution!)
1159 - Added form_button() in the :doc:`Form
1160 helper <helpers/form_helper>`.
1161 - Changed the radio() and checkbox() functions to default to not
1162 checked by default.
1163 - Added the ability to include an optional HTTP Response Code in the
1164 redirect() function of the :doc:`URL
1165 Helper <helpers/url_helper>`.
1166 - Modified img() in the :doc:`HTML Helper <helpers/html_helper>` to
1167 remove an unneeded space (#4208).
1168 - Modified anchor() in the :doc:`URL helper <helpers/url_helper>`
1169 to no longer add a default title= attribute (#4209).
1170 - The :doc:`Download helper <helpers/download_helper>` now exits
1171 within force_download().
1172 - Added get_dir_file_info(), get_file_info(), and
1173 get_mime_by_extension() to the :doc:`File
1174 Helper <helpers/file_helper>`.
1175 - Added symbolic_permissions() and octal_permissions() to the
1176 :doc:`File helper <helpers/file_helper>`.
1177
1178- Plugins
1179
1180 - Modified captcha generation to first look for the function
1181 imagecreatetruecolor, and fallback to imagecreate if it isn't
1182 available (#4226).
1183
1184- Other Changes
1185
1186 - Added ability for :doc:`xss_clean() <libraries/input>` to accept
1187 arrays.
1188 - Removed closing PHP tags from all PHP files to avoid accidental
1189 output and potential 'cannot modify headers' errors.
1190 - Removed "scripts" from the auto-load search path. Scripts were
1191 deprecated in Version 1.4.1 (September 21, 2006). If you still
1192 need to use them for legacy reasons, they must now be manually
1193 loaded in each Controller.
1194 - Added a :doc:`Reserved Names <general/reserved_names>` page to
1195 the userguide, and migrated reserved controller names into it.
1196 - Added a :doc:`Common Functions <general/common_functions>` page
1197 to the userguide for globally available functions.
1198 - Improved security and performance of xss_clean().
1199
1200Bugfixes for 1.6.2
1201------------------
1202
1203- Fixed a bug where SET queries were not being handled as "write"
1204 queries.
1205- Fixed a bug (#3191) with ORIG_PATH_INFO URI parsing.
1206- Fixed a bug in DB Forge, when inserting an id field (#3456).
1207- Fixed a bug in the table library that could cause identically
1208 constructed rows to be dropped (#3459).
1209- Fixed DB Driver and MySQLi result driver checking for resources
1210 instead of objects (#3461).
1211- Fixed an AR_caching error where it wasn't tracking table aliases
1212 (#3463).
1213- Fixed a bug in AR compiling, where select statements with arguments
1214 got incorrectly escaped (#3478).
1215- Fixed an incorrect documentation of $this->load->language (#3520).
1216- Fixed bugs (#3523, #4350) in get_filenames() with recursion and
1217 problems with Windows when $include_path is used.
1218- Fixed a bug (#4153) in the XML-RPC class preventing dateTime.iso8601
1219 from being used.
1220- Fixed an AR bug with or_where_not_in() (#4171).
1221- Fixed a bug with :doc:`xss_clean() <libraries/input>` that would
1222 add semicolons to GET URI variable strings.
1223- Fixed a bug (#4206) in the Directory Helper where the directory
1224 resource was not being closed, and minor improvements.
1225- Fixed a bug in the FTP library where delete_dir() was not working
1226 recursively (#4215).
1227- Fixed a Validation bug when set_rules() is used with a non-array
1228 field name and rule (#4220).
1229- Fixed a bug (#4223) where DB caching would not work for returned DB
1230 objects or multiple DB connections.
1231- Fixed a bug in the Upload library that might output the same error
1232 twice (#4390).
1233- Fixed an AR bug when joining with a table alias and table prefix
1234 (#4400).
1235- Fixed a bug in the DB class testing the $params argument.
1236- Fixed a bug in the Table library where the integer 0 in cell data
1237 would be displayed as a blank cell.
1238- Fixed a bug in link_tag() of the :doc:`URL
1239 helper <helpers/url_helper>` where a key was passed instead of
1240 a value.
1241- Fixed a bug in DB_result::row() that prevented it from returning
1242 individual fields with MySQL NULL values.
1243- Fixed a bug where SMTP emails were not having dot transformation
1244 performed on lines that begin with a dot.
1245- Fixed a bug in display_error() in the DB driver that was
1246 instantiating new Language and Exception objects, and not using the
1247 error heading.
1248- Fixed a bug (#4413) where a URI containing slashes only e.g.
1249 'http://example.com/index.php?//' would result in PHP errors
1250- Fixed an array to string conversion error in the Validation library
1251 (#4425)
1252- Fixed bug (#4451, #4299, #4339) where failed transactions will not
1253 rollback when debug mode is enabled.
1254- Fixed a bug (#4506) with overlay_watermark() in the Image library
1255 preventing support for PNG-24s with alpha transparency
1256- Fixed assorted user guide typos (#3453, #4364, #4379, #4399, #4408,
1257 #4412, #4448, #4488).
1258
1259Version 1.6.1
1260=============
1261
1262Release Date: February 12, 2008
1263Hg Tag: 1.6.1
1264
1265- Active Record
1266
1267 - Added :ref:`Active Record
1268 Caching <ar-caching>`.
1269 - Made Active Record fully database-prefix aware.
1270
1271- Database drivers
1272
1273 - Added support for setting client character set and collation for
1274 MySQLi.
1275
1276- Core Changes
1277
1278 - Modified xss_clean() to be more intelligent with its handling of
1279 URL encoded strings.
1280 - Added $_SERVER, $_FILES, $_ENV, and $_SESSION to sanitization
1281 of globals.
1282 - Added a `Path Helper <./helpers/path_helper>`.
1283 - Simplified _reindex_segments() in the URI class.
1284 - Escaped the '-' in the default 'permitted_uri_chars' config
1285 item, to prevent errors if developers just try to add additional
1286 characters to the end of the default expression.
1287 - Modified method calling to controllers to show a 404 when a
1288 private or protected method is accessed via a URL.
1289 - Modified framework initiated 404s to log the controller and method
1290 for invalid requests.
1291
1292- Helpers
1293
1294 - Modified get_filenames() in the File Helper to return FALSE if
1295 the $source_dir is not readable.
1296
1297Bugfixes for 1.6.1
1298------------------
1299
1300- Deprecated is_numeric as a validation rule. Use of numeric and
1301 integer are preferred.
1302- Fixed bug (#3379) in DBForge with SQLite for table creation.
1303- Made Active Record fully database prefix aware (#3384).
1304- Fixed a bug where DBForge was outputting invalid SQL in Postgres by
1305 adding brackets around the tables in FROM.
1306- Changed the behaviour of Active Record's update() to make the WHERE
1307 clause optional (#3395).
1308- Fixed a bug (#3396) where certain POST variables would cause a PHP
1309 warning.
1310- Fixed a bug in query binding (#3402).
1311- Changed order of SQL keywords in the Profiler $highlight array so OR
1312 would not be highlighted before ORDER BY.
1313- Fixed a bug (#3404) where the MySQLi driver was testing if
1314 $this->conn_id was a resource instead of an object.
1315- Fixed a bug (#3419) connecting to a database via a DSN string.
1316- Fixed a bug (#3445) where the routed segment array was not re-indexed
1317 to begin with 1 when the default controller is used.
1318- Fixed assorted user guide typos.
1319
1320Version 1.6.0
1321=============
1322
1323Release Date: January 30, 2008
1324
1325- DBForge
1326
1327 - Added :doc:`DBForge <./database/forge>` to the database tools.
1328 - Moved create_database() and drop_database() into
1329 :doc:`DBForge <./database/forge>`.
1330 - Added add_field(), add_key(), create_table(), drop_table(),
1331 add_column(), drop_column(), modify_column() into
1332 :doc:`DBForge <./database/forge>`.
1333
1334- Active Record
1335
1336 - Added protect_identifiers() in :doc:`Active
1337 Record <./database/active_record>`.
1338 - All AR queries are backticked if appropriate to the database.
1339 - Added where_in(), or_where_in(), where_not_in(),
1340 or_where_not_in(), not_like() and or_not_like() to :doc:`Active
1341 Record <./database/active_record>`.
1342 - Added support for limit() into update() and delete() statements in
1343 :doc:`Active Record <./database/active_record>`.
1344 - Added empty_table() and truncate_table() to :doc:`Active
1345 Record <./database/active_record>`.
1346 - Added the ability to pass an array of tables to the delete()
1347 statement in :doc:`Active Record <./database/active_record>`.
1348 - Added count_all_results() function to :doc:`Active
1349 Record <./database/active_record>`.
1350 - Added select_max(), select_min(), select_avg() and
1351 select_sum() to :doc:`Active Record <./database/active_record>`.
1352 - Added the ability to use aliases with joins in :doc:`Active
1353 Record <./database/active_record>`.
1354 - Added a third parameter to Active Record's like() clause to
1355 control where the wildcard goes.
1356 - Added a third parameter to set() in :doc:`Active
1357 Record <./database/active_record>` that withholds escaping
1358 data.
1359 - Changed the behaviour of variables submitted to the where() clause
1360 with no values to auto set "IS NULL"
1361
1362- Other Database Related
1363
1364 - MySQL driver now requires MySQL 4.1+
1365 - Added $this->DB->save_queries variable to DB driver, enabling
1366 queries to get saved or not. Previously they were always saved.
1367 - Added $this->db->dbprefix() to manually add database prefixes.
1368 - Added 'random' as an order_by() option , and removed "rand()" as
1369 a listed option as it was MySQL only.
1370 - Added a check for NULL fields in the MySQL database backup
1371 utility.
1372 - Added "constrain_by_prefix" parameter to db->list_table()
1373 function. If set to TRUE it will limit the result to only table
1374 names with the current prefix.
1375 - Deprecated from Active Record; getwhere() for get_where();
1376 groupby() for group_by(); havingor() for having_or(); orderby()
1377 for order_by; orwhere() for or_where(); and orlike() for
1378 or_like().
1379 - Modified csv_from_result() to output CSV data more in the spirit
1380 of basic rules of RFC 4180.
1381 - Added 'char_set' and 'dbcollat' database configuration settings,
1382 to explicitly set the client communication properly.
1383 - Removed 'active_r' configuration setting and replaced with a
1384 global $active_record setting, which is more in harmony with the
1385 global nature of the behavior (#1834).
1386
1387- Core changes
1388
1389 - Added ability to load multiple views, whose content will be
1390 appended to the output in the order loaded.
1391 - Added the ability to :doc:`auto-load <./general/autoloader>`
1392 :doc:`Models <./general/models>`.
1393 - Reorganized the URI and Routes classes for better clarity.
1394 - Added Compat.php to allow function overrides for older versions of
1395 PHP or PHP environments missing certain extensions / libraries
1396 - Added memory usage, GET, URI string data, and individual query
1397 execution time to Profiler output.
1398 - Deprecated Scaffolding.
1399 - Added is_really_writable() to Common.php to provide a
1400 cross-platform reliable method of testing file/folder writability.
1401
1402- Libraries
1403
1404 - Changed the load protocol of Models to allow for extension.
1405 - Strengthened the Encryption library to help protect against man in
1406 the middle attacks when MCRYPT_MODE_CBC mode is used.
1407 - Added Flashdata variables, session_id regeneration and
1408 configurable session update times to the :doc:`Session
1409 class. <./libraries/sessions>`
1410 - Removed 'last_visit' from the Session class.
1411 - Added a language entry for valid_ip validation error.
1412 - Modified prep_for_form() in the Validation class to accept
1413 arrays, adding support for POST array validation (via callbacks
1414 only)
1415 - Added an "integer" rule into the Validation library.
1416 - Added valid_base64() to the Validation library.
1417 - Documented clear() in the :doc:`Image
1418 Processing <../libraries/image_lib>` library.
1419 - Changed the behaviour of custom callbacks so that they no longer
1420 trigger the "required" rule.
1421 - Modified Upload class $_FILES error messages to be more precise.
1422 - Moved the safe mode and auth checks for the Email library into the
1423 constructor.
1424 - Modified variable names in _ci_load() method of Loader class to
1425 avoid conflicts with view variables.
1426 - Added a few additional mime type variations for CSV.
1427 - Enabled the 'system' methods for the XML-RPC Server library,
1428 except for 'system.multicall' which is still disabled.
1429
1430- Helpers & Plugins
1431
1432 - Added link_tag() to the :doc:`HTML
1433 helper. <./helpers/html_helper>`
1434 - Added img() to the :doc:`HTML helper. <./helpers/html_helper>`
1435 - Added ability to :doc:`"extend" Helpers <./general/helpers>`.
1436 - Added an :doc:`email helper <./helpers/email_helper>` into core
1437 helpers.
1438 - Added strip_quotes() function to :doc:`string
1439 helper <./helpers/string_helper>`.
1440 - Added reduce_multiples() function to :doc:`string
1441 helper <./helpers/string_helper>`.
1442 - Added quotes_to_entities() function to :doc:`string
1443 helper <./helpers/string_helper>`.
1444 - Added form_fieldset(), form_fieldset_close(), form_label(),
1445 and form_reset() function to :doc:`form
1446 helper <./helpers/form_helper>`.
1447 - Added support for external urls in form_open().
1448 - Removed support for db_backup in MySQLi due to incompatible
1449 functions.
1450 - Javascript Calendar plugin now uses the months and days from the
1451 calendar language file, instead of hard-coded values,
1452 internationalizing it.
1453
1454- Documentation Changes
1455
1456 - Added Writing Documentation section
1457 for the community to use in writing their own documentation.
1458 - Added titles to all user manual pages.
1459 - Added attributes into <html> of userguide for valid html.
1460 - Added `Zip Encoding
1461 Class <http://codeigniter.com/user_guide/libraries/zip>`_ to
1462 the table of contents of the userguide.
1463 - Moved part of the userguide menu javascript to an external file.
1464 - Documented distinct() in :doc:`Active
1465 Record <./database/active_record>`.
1466 - Documented the timezones() function in the :doc:`Date
1467 Helper <./helpers/date_helper>`.
1468 - Documented unset_userdata in the :doc:`Session
1469 class <./libraries/sessions>`.
1470 - Documented 2 config options to the :doc:`Database
1471 configuration <./database/configuration>` page.
1472
1473Bug fixes for Version 1.6.0
1474---------------------------
1475
1476- Fixed a bug (#1813) preventing using $CI->db in the same application
1477 with returned database objects.
1478- Fixed a bug (#1842) where the $this->uri->rsegments array would not
1479 include the 'index' method if routed to the controller without an
1480 implicit method.
1481- Fixed a bug (#1872) where word_limiter() was not retaining
1482 whitespace.
1483- Fixed a bug (#1890) in csv_from_result() where content that
1484 included the delimiter would break the file.
1485- Fixed a bug (#2542)in the clean_email() method of the Email class to
1486 allow for non-numeric / non-sequential array keys.
1487- Fixed a bug (#2545) in _html_entity_decode_callback() when
1488 'global_xss_filtering' is enabled.
1489- Fixed a bug (#2668) in the :doc:`parser class <./libraries/parser>`
1490 where numeric data was ignored.
1491- Fixed a bug (#2679) where the "previous" pagination link would get
1492 drawn on the first page.
1493- Fixed a bug (#2702) in _object_to_array that broke some types of
1494 inserts and updates.
1495- Fixed a bug (#2732) in the SQLite driver for PHP 4.
1496- Fixed a bug (#2754) in Pagination to scan for non-positive
1497 num_links.
1498- Fixed a bug (#2762) in the :doc:`Session
1499 library <./libraries/sessions>` where user agent matching would
1500 fail on user agents ending with a space.
1501- Fixed a bug (#2784) $field_names[] vs $Ffield_names[] in postgres
1502 and sqlite drivers.
1503- Fixed a bug (#2810) in the typography helper causing extraneous
1504 paragraph tags when string contains tags.
1505- Fixed a bug (#2849) where arguments passed to a subfolder controller
1506 method would be incorrectly shifted, dropping the 3rd segment value.
1507- Fixed a bug (#2858) which referenced a wrong variable in the Image
1508 class.
1509- Fixed a bug (#2875)when loading plugin files as _plugin. and not
1510 _pi.
1511- Fixed a bug (#2912) in get_filenames() in the :doc:`File
1512 Helper <helpers/file_helper>` where the array wasn't cleared
1513 after each call.
1514- Fixed a bug (#2974) in highlight_phrase() that caused an error with
1515 slashes.
1516- Fixed a bug (#3003) in the Encryption Library to support modes other
1517 than MCRYPT_MODE_ECB
1518- Fixed a bug (#3015) in the :doc:`User Agent
1519 library <./libraries/user_agent>` where more then 2 languages
1520 where not reported with languages().
1521- Fixed a bug (#3017) in the :doc:`Email <./libraries/email>` library
1522 where some timezones were calculated incorrectly.
1523- Fixed a bug (#3024) in which master_dim wasn't getting reset by
1524 clear() in the Image library.
1525- Fixed a bug (#3156) in Text Helper highlight_code() causing PHP tags
1526 to be handled incorrectly.
1527- Fixed a bug (#3166) that prevented num_rows from working in Oracle.
1528- Fixed a bug (#3175) preventing certain libraries from working
1529 properly when autoloaded in PHP 4.
1530- Fixed a bug (#3267) in the Typography Helper where unordered list was
1531 listed "un.
1532- Fixed a bug (#3268) where the Router could leave '/' as the path.
1533- Fixed a bug (#3279) where the Email class was sending the wrong
1534 Content-Transfer-Encoding for some character sets.
1535- Fixed a bug (#3284) where the rsegment array would not be set
1536 properly if the requested URI contained more segments than the routed
1537 URI.
1538- Removed extraneous load of $CFG in _display_cache() of the Output
1539 class (#3285).
1540- Removed an extraneous call to loading models (#3286).
1541- Fixed a bug (#3310) with sanitization of globals in the Input class
1542 that could unset CI's global variables.
1543- Fixed a bug (#3314) which would cause the top level path to be
1544 deleted in delete_files() of the File helper.
1545- Fixed a bug (#3328) where the smiley helper might return an undefined
1546 variable.
1547- Fixed a bug (#3330) in the FTP class where a comparison wasn't
1548 getting made.
1549- Removed an unused parameter from Profiler (#3332).
1550- Fixed a bug in database driver where num_rows property wasn't
1551 getting updated.
1552- Fixed a bug in the :doc:`upload
1553 library <./libraries/file_uploading>` when allowed_files
1554 wasn't defined.
1555- Fixed a bug in word_wrap() of the Text Helper that incorrectly
1556 referenced an object.
1557- Fixed a bug in Validation where valid_ip() wasn't called properly.
1558- Fixed a bug in Validation where individual error messages for
1559 checkboxes wasn't supported.
1560- Fixed a bug in captcha calling an invalid PHP function.
1561- Fixed a bug in the cookie helper "set_cookie" function. It was not
1562 honoring the config settings.
1563- Fixed a bug that was making validation callbacks required even when
1564 not set as such.
1565- Fixed a bug in the XML-RPC library so if a type is specified, a more
1566 intelligent decision is made as to the default type.
1567- Fixed an example of comma-separated emails in the email library
1568 documentation.
1569- Fixed an example in the Calendar library for Showing Next/Previous
1570 Month Links.
1571- Fixed a typo in the database language file.
1572- Fixed a typo in the image language file "suppor" to "support".
1573- Fixed an example for XML RPC.
1574- Fixed an example of accept_charset() in the :doc:`User Agent
1575 Library <./libraries/user_agent>`.
1576- Fixed a typo in the docblock comments that had CodeIgniter spelled
1577 CodeIgnitor.
1578- Fixed a typo in the :doc:`String Helper <./helpers/string_helper>`
1579 (uniquid changed to uniqid).
1580- Fixed typos in the email Language class
1581 (email_attachment_unredable, email_filed_smtp_login), and FTP
1582 Class (ftp_unable_to_remame).
1583- Added a stripslashes() into the Upload Library.
1584- Fixed a series of grammatical and spelling errors in the language
1585 files.
1586- Fixed assorted user guide typos.
1587
1588Version 1.5.4
1589=============
1590
1591Release Date: July 12, 2007
1592
1593- Added :doc:`custom Language files <./libraries/language>` to the
1594 :doc:`autoload <./general/autoloader>` options.
1595- Added stripslashes() to the _clean_input_data() function in the
1596 :doc:`Input class <./libraries/input>` when magic quotes is on so
1597 that data will always be un-slashed within the framework.
1598- Added array to string into the :doc:`profiler <general/profiling>`.
1599- Added some additional mime types in application/config/mimes.php.
1600- Added filename_security() method to :doc:`Input
1601 library <./libraries/input>`.
1602- Added some additional arguments to the :doc:`Inflection
1603 helper <./helpers/inflector_helper>` singular() to compensate
1604 for words ending in "s". Also added a force parameter to pluralize().
1605- Added $config['charset'] to the config file. Default value is
1606 'UTF-8', used in some string handling functions.
1607- Fixed MSSQL insert_id().
1608- Fixed a logic error in the DB trans_status() function. It was
1609 incorrectly returning TRUE on failure and FALSE on success.
1610- Fixed a bug that was allowing multiple load attempts on extended
1611 classes.
1612- Fixed a bug in the bootstrap file that was incorrectly attempting to
1613 discern the full server path even when it was explicity set by the
1614 user.
1615- Fixed a bug in the escape_str() function in the MySQL driver.
1616- Fixed a typo in the :doc:`Calendar library <./libraries/calendar>`
1617- Fixed a typo in rpcs.php library
1618- Fixed a bug in the :doc:`Zip library <./libraries/zip>`, providing
1619 PC Zip file compatibility with Mac OS X
1620- Fixed a bug in router that was ignoring the scaffolding route for
1621 optimization
1622- Fixed an IP validation bug.
1623- Fixed a bug in display of POST keys in the
1624 :doc:`Profiler <./general/profiling>` output
1625- Fixed a bug in display of queries with characters that would be
1626 interpreted as HTML in the :doc:`Profiler <./general/profiling>`
1627 output
1628- Fixed a bug in display of Email class print debugger with characters
1629 that would be interpreted as HTML in the debugging output
1630- Fixed a bug in the Content-Transfer-Encoding of HTML emails with the
1631 quoted-printable MIME type
1632- Fixed a bug where one could unset certain PHP superglobals by setting
1633 them via GET or POST data
1634- Fixed an undefined function error in the insert_id() function of the
1635 PostgreSQL driver
1636- Fixed various doc typos.
1637- Documented two functions from the :doc:`String
1638 helper <./helpers/string_helper>` that were missing from the
1639 user guide: trim_slashes() and reduce_double_slashes().
1640- Docs now validate to XHTML 1 transitional
1641- Updated the XSS Filtering to take into account the IE expression()
1642 ability and improved certain deletions to prevent possible exploits
1643- Modified the Router so that when Query Strings are Enabled, the
1644 controller trigger and function trigger values are sanitized for
1645 filename include security.
1646- Modified the is_image() method in the Upload library to take into
1647 account Windows IE 6/7 eccentricities when dealing with MIMEs
1648- Modified XSS Cleaning routine to be more performance friendly and
1649 compatible with PHP 5.2's new PCRE backtrack and recursion limits.
1650- Modified the :doc:`URL Helper <./helpers/url_helper>` to type cast
1651 the $title as a string in case a numeric value is supplied
1652- Modified Form Helper form_dropdown() to type cast the keys and
1653 values of the options array as strings, allowing numeric values to be
1654 properly set as 'selected'
1655- Deprecated the use if is_numeric() in various places since it allows
1656 periods. Due to compatibility problems with ctype_digit(), making it
1657 unreliable in some installations, the following regular expression
1658 was used instead: preg_match("/[^0-9]/", $n)
1659- Deprecated: APPVER has been deprecated and replaced with CI_VERSION
1660 for clarity.
1661
1662Version 1.5.3
1663=============
1664
1665Release Date: April 15, 2007
1666
1667- Added array to string into the profiler
1668- Code Igniter references updated to CodeIgniter
1669- pMachine references updated to EllisLab
1670- Fixed a bug in the repeater function of :doc:`string
1671 helper <./helpers/string_helper>`.
1672- Fixed a bug in ODBC driver
1673- Fixed a bug in result_array() that was returning an empty array when
1674 no result is produced.
1675- Fixed a bug in the redirect function of the :doc:`url
1676 helper <./helpers/url_helper>`.
1677- Fixed an undefined variable in Loader
1678- Fixed a version bug in the Postgres driver
1679- Fixed a bug in the textarea function of the form helper for use with
1680 strings
1681- Fixed doc typos.
1682
1683Version 1.5.2
1684=============
1685
1686Release Date: February 13, 2007
1687
1688- Added subversion information
1689 to the `downloads <installation/downloads>` page.
1690- Added support for captions in the :doc:`Table
1691 Library <./libraries/table>`
1692- Fixed a bug in the
1693 :doc:`download_helper <helpers/download_helper>` that was causing
1694 Internet Explorer to load rather than download
1695- Fixed a bug in the Active Record Join function that was not taking
1696 table prefixes into consideration.
1697- Removed unescaped variables in error messages of Input and Router
1698 classes
1699- Fixed a bug in the Loader that was causing errors on Libraries loaded
1700 twice. A debug message is now silently made in the log.
1701- Fixed a bug in the :doc:`form helper <helpers/form_helper>` that
1702 gave textarea a value attribute
1703- Fixed a bug in the :doc:`Image Library <libraries/image_lib>` that
1704 was ignoring resizing the same size image
1705- Fixed some doc typos.
1706
1707Version 1.5.1
1708=============
1709
1710Release Date: November 23, 2006
1711
1712- Added support for submitting arrays of libraries in the
1713 $this->load->library function.
1714- Added support for naming custom library files in lower or uppercase.
1715- Fixed a bug related to output buffering.
1716- Fixed a bug in the active record class that was not resetting query
1717 data after a completed query.
1718- Fixed a bug that was suppressing errors in controllers.
1719- Fixed a problem that can cause a loop to occur when the config file
1720 is missing.
1721- Fixed a bug that occurred when multiple models were loaded with the
1722 third parameter set to TRUE.
1723- Fixed an oversight that was not unsetting globals properly in the
1724 input sanitize function.
1725- Fixed some bugs in the Oracle DB driver.
1726- Fixed an incorrectly named variable in the MySQLi result driver.
1727- Fixed some doc typos.
1728
1729Version 1.5.0.1
1730===============
1731
1732Release Date: October 31, 2006
1733
1734- Fixed a problem in which duplicate attempts to load helpers and
1735 classes were not being stopped.
1736- Fixed a bug in the word_wrap() helper function.
1737- Fixed an invalid color Hex number in the Profiler class.
1738- Fixed a corrupted image in the user guide.
1739
1740Version 1.5.0
1741=============
1742
1743Release Date: October 30, 2006
1744
1745- Added `DB utility class <./database/utilities>`, permitting DB
1746 backups, CVS or XML files from DB results, and various other
1747 functions.
1748- Added :doc:`Database Caching Class <./database/caching>`.
1749- Added :doc:`transaction support <./database/transactions>` to the
1750 database classes.
1751- Added :doc:`Profiler Class <./general/profiling>` which generates a
1752 report of Benchmark execution times, queries, and POST data at the
1753 bottom of your pages.
1754- Added :doc:`User Agent Library <./libraries/user_agent>` which
1755 allows browsers, robots, and mobile devises to be identified.
1756- Added :doc:`HTML Table Class <./libraries/table>` , enabling tables
1757 to be generated from arrays or database results.
1758- Added :doc:`Zip Encoding Library <./libraries/zip>`.
1759- Added :doc:`FTP Library <./libraries/ftp>`.
1760- Added the ability to :doc:`extend
1761 libraries <./general/creating_libraries>` and :doc:`extend core
1762 classes <./general/core_classes>`, in addition to being able to
1763 replace them.
1764- Added support for storing :doc:`models within
1765 sub-folders <./general/models>`.
1766- Added :doc:`Download Helper <./helpers/download_helper>`.
1767- Added :doc:`simple_query() <./database/queries>` function to the
1768 database classes
1769- Added :doc:`standard_date() <./helpers/date_helper>` function to
1770 the Date Helper.
1771- Added :doc:`$query->free_result() <./database/results>` to database
1772 class.
1773- Added :doc:`$query->list_fields() <./database/fields>` function to
1774 database class
1775- Added :doc:`$this->db->platform() <./database/helpers>` function
1776- Added new :doc:`File Helper <./helpers/file_helper>`:
1777 get_filenames()
1778- Added new helper: :doc:`Smiley Helper <./helpers/smiley_helper>`
1779- Added support for <ul> and <ol> lists in the :doc:`HTML
1780 Helper <./helpers/html_helper>`
1781- Added the ability to rewrite :doc:`short
1782 tags <./general/alternative_php>` on-the-fly, converting them
1783 to standard PHP statements, for those servers that do not support
1784 short tags. This allows the cleaner syntax to be used regardless of
1785 whether it's supported by the server.
1786- Added the ability to :doc:`rename or relocate the "application"
1787 folder <./general/managing_apps>`.
1788- Added more thorough initialization in the upload class so that all
1789 class variables are reset.
1790- Added "is_numeric" to validation, which uses the native PHP
1791 is_numeric function.
1792- Improved the URI handler to make it more reliable when the
1793 $config['uri_protocol'] item is set to AUTO.
1794- Moved most of the functions in the Controller class into the Loader
1795 class, allowing fewer reserved function names for controllers when
1796 running under PHP 5.
1797- Updated the DB Result class to return an empty array when
1798 $query->result() doesn't produce a result.
1799- Updated the input->cookie() and input->post() functions in :doc:`Input
1800 Class <./libraries/input>` to permit arrays contained cookies
1801 that are arrays to be run through the XSS filter.
1802- Documented three functions from the Validation
1803 class that were missing from the user
1804 guide: set_select(), set_radio(), and set_checkbox().
1805- Fixed a bug in the Email class related to SMTP Helo data.
1806- Fixed a bug in the word wrapping helper and function in the email
1807 class.
1808- Fixed a bug in the validation class.
1809- Fixed a bug in the typography helper that was incorrectly wrapping
1810 block level elements in paragraph tags.
1811- Fixed a problem in the form_prep() function that was double encoding
1812 entities.
1813- Fixed a bug that affects some versions of PHP when output buffering
1814 is nested.
1815- Fixed a bug that caused CI to stop working when the PHP magic
1816 __get() or __set() functions were used within models or
1817 controllers.
1818- Fixed a pagination bug that was permitting negative values in the
1819 URL.
1820- Fixed an oversight in which the Loader class was not allowed to be
1821 extended.
1822- Changed _get_config() to get_config() since the function is not a
1823 private one.
1824- **Deprecated "init" folder**. Initialization happens automatically
1825 now. :doc:`Please see documentation <./general/creating_libraries>`.
1826- **Deprecated** $this->db->field_names() USE
1827 $this->db->list_fields()
1828- **Deprecated** the $config['log_errors'] item from the config.php
1829 file. Instead, $config['log_threshold'] can be set to "0" to turn it
1830 off.
1831
1832Version 1.4.1
1833=============
1834
1835Release Date: September 21, 2006
1836
1837- Added a new feature that passes URI segments directly to your
1838 function calls as parameters. See the
1839 :doc:`Controllers <general/controllers>` page for more info.
1840- Added support for a function named _output(), which when used in
1841 your controllers will received the final rendered output from the
1842 output class. More info in the :doc:`Controllers <general/controllers>`
1843 page.
1844- Added several new functions in the :doc:`URI
1845 Class <./libraries/uri>` to let you retrieve and manipulate URI
1846 segments that have been re-routed using the :doc:`URI
1847 Routing <general/routing>` feature. Previously, the URI class did not
1848 permit you to access any re-routed URI segments, but now it does.
1849- Added :doc:`$this->output->set_header() <./libraries/output>`
1850 function, which allows you to set server headers.
1851- Updated plugins, helpers, and language classes to allow your
1852 application folder to contain its own plugins, helpers, and language
1853 folders. Previously they were always treated as global for your
1854 entire installation. If your application folder contains any of these
1855 resources they will be used *instead* the global ones.
1856- Added :doc:`Inflector helper <./helpers/inflector_helper>`.
1857- Added element() function in the :doc:`array
1858 helper <./helpers/array_helper>`.
1859- Added RAND() to active record orderby() function.
1860- Added delete_cookie() and get_cookie() to :doc:`Cookie
1861 helper <./helpers/cookie_helper>`, even though the input class
1862 has a cookie fetching function.
1863- Added Oracle database driver (still undergoing testing so it might
1864 have some bugs).
1865- Added the ability to combine pseudo-variables and php variables in
1866 the template parser class.
1867- Added output compression option to the config file.
1868- Removed the is_numeric test from the db->escape() function.
1869- Fixed a MySQLi bug that was causing error messages not to contain
1870 proper error data.
1871- Fixed a bug in the email class which was causing it to ignore
1872 explicitly set alternative headers.
1873- Fixed a bug that was causing a PHP error when the Exceptions class
1874 was called within the get_config() function since it was causing
1875 problems.
1876- Fixed an oversight in the cookie helper in which the config file
1877 cookie settings were not being honored.
1878- Fixed an oversight in the upload class. An item mentioned in the 1.4
1879 changelog was missing.
1880- Added some code to allow email attachments to be reset when sending
1881 batches of email.
1882- Deprecated the application/scripts folder. It will continue to work
1883 for legacy users, but it is recommended that you create your own
1884 :doc:`libraries <./general/libraries>` or
1885 :doc:`models <./general/models>` instead. It was originally added
1886 before CI had user libraries or models, but it's not needed anymore.
1887- Deprecated the $autoload['core'] item from the autoload.php file.
1888 Instead, please now use: $autoload['libraries']
1889- Deprecated the following database functions:
1890 $this->db->smart_escape_str() and $this->db->fields().
1891
1892Version 1.4.0
1893=============
1894
1895Release Date: September 17, 2006
1896
1897- Added :doc:`Hooks <./general/hooks>` feature, enabling you to tap
1898 into and modify the inner workings of the framework without hacking
1899 the core files.
1900- Added the ability to organize controller files :doc:`into
1901 sub-folders <general/controllers>`. Kudos to Marco for
1902 `suggesting <http://codeigniter.com/forums/viewthread/627/>`_ this
1903 (and the next two) feature.
1904- Added regular expressions support for `routing
1905 rules <./general/routing>`.
1906- Added the ability to :doc:`remap function
1907 calls <./general/controllers>` within your controllers.
1908- Added the ability to :doc:`replace core system
1909 classes <./general/core_classes>` with your own classes.
1910- Added support for % character in URL.
1911- Added the ability to supply full URLs using the
1912 :doc:`anchor() <./helpers/url_helper>` helper function.
1913- Added mode parameter to :doc:`file_write() <./helpers/file_helper>`
1914 helper.
1915- Added support for changing the port number in the :doc:`Postgres
1916 driver <./database/configuration>`.
1917- Moved the list of "allowed URI characters" out of the Router class
1918 and into the config file.
1919- Moved the MIME type array out of the Upload class and into its own
1920 file in the applications/config/ folder.
1921- Updated the Upload class to allow the upload field name to be set
1922 when calling :doc:`do_upload() <./libraries/file_uploading>`.
1923- Updated the :doc:`Config Library <./libraries/config>` to be able to
1924 load config files silently, and to be able to assign config files to
1925 their own index (to avoid collisions if you use multiple config
1926 files).
1927- Updated the URI Protocol code to allow more options so that URLs will
1928 work more reliably in different environments.
1929- Updated the form_open() helper to allow the GET method to be used.
1930- Updated the MySQLi execute() function with some code to help prevent
1931 lost connection errors.
1932- Updated the SQLite Driver to check for object support before
1933 attempting to return results as objects. If unsupported it returns an
1934 array.
1935- Updated the Models loader function to allow multiple loads of the
1936 same model.
1937- Updated the MS SQL driver so that single quotes are escaped.
1938- Updated the Postgres and ODBC drivers for better compatibility.
1939- Removed a strtolower() call that was changing URL segments to lower
1940 case.
1941- Removed some references that were interfering with PHP 4.4.1
1942 compatibility.
1943- Removed backticks from Postgres class since these are not needed.
1944- Renamed display() to _display() in the Output class to make it clear
1945 that it's a private function.
1946- Deprecated the hash() function due to a naming conflict with a native
1947 PHP function with the same name. Please use dohash() instead.
1948- Fixed an bug that was preventing the input class from unsetting GET
1949 variables.
1950- Fixed a router bug that was making it too greedy when matching end
1951 segments.
1952- Fixed a bug that was preventing multiple discrete database calls.
1953- Fixed a bug in which loading a language file was producing a "file
1954 contains no data" message.
1955- Fixed a session bug caused by the XSS Filtering feature inadvertently
1956 changing the case of certain words.
1957- Fixed some missing prefixes when using the database prefix feature.
1958- Fixed a typo in the Calendar class (cal_november).
1959- Fixed a bug in the form_checkbox() helper.
1960- Fixed a bug that was allowing the second segment of the URI to be
1961 identical to the class name.
1962- Fixed an evaluation bug in the database initialization function.
1963- Fixed a minor bug in one of the error messages in the language class.
1964- Fixed a bug in the date helper timespan function.
1965- Fixed an undefined variable in the DB Driver class.
1966- Fixed a bug in which dollar signs used as binding replacement values
1967 in the DB class would be treated as RegEx back-references.
1968- Fixed a bug in the set_hash() function which was preventing MD5 from
1969 being used.
1970- Fixed a couple bugs in the Unit Testing class.
1971- Fixed an incorrectly named variable in the Validation class.
1972- Fixed an incorrectly named variable in the URI class.
1973- Fixed a bug in the config class that was preventing the base URL from
1974 being called properly.
1975- Fixed a bug in the validation class that was not permitting callbacks
1976 if the form field was empty.
1977- Fixed a problem that was preventing scaffolding from working properly
1978 with MySQLi.
1979- Fixed some MS SQL bugs.
1980- Fixed some doc typos.
1981
1982Version 1.3.3
1983=============
1984
1985Release Date: June 1, 2006
1986
1987- Models do **not** connect automatically to the database as of this
1988 version. :doc:`More info here <./general/models>`.
1989- Updated the Sessions class to utilize the active record class when
1990 running session related queries. Previously the queries assumed MySQL
1991 syntax.
1992- Updated alternator() function to re-initialize when called with no
1993 arguments, allowing multiple calls.
1994- Fixed a bug in the active record "having" function.
1995- Fixed a problem in the validation class which was making checkboxes
1996 be ignored when required.
1997- Fixed a bug in the word_limiter() helper function. It was cutting
1998 off the fist word.
1999- Fixed a bug in the xss_clean function due to a PHP bug that affects
2000 some versions of html_entity_decode.
2001- Fixed a validation bug that was preventing rules from being set twice
2002 in one controller.
2003- Fixed a calendar bug that was not letting it use dynamically loaded
2004 languages.
2005- Fixed a bug in the active record class when using WHERE clauses with
2006 LIKE
2007- Fixed a bug in the hash() security helper.
2008- Fixed some typos.
2009
2010Version 1.3.2
2011=============
2012
2013Release Date: April 17, 2006
2014
2015- Changed the behavior of the validation class such that if a
2016 "required" rule is NOT explicitly stated for a field then all other
2017 tests get ignored.
2018- Fixed a bug in the Controller class that was causing it to look in
2019 the local "init" folder instead of the main system one.
2020- Fixed a bug in the init_pagination file. The $config item was not
2021 being set correctly.
2022- Fixed a bug in the auto typography helper that was causing
2023 inconsistent behavior.
2024- Fixed a couple bugs in the Model class.
2025- Fixed some documentation typos and errata.
2026
2027Version 1.3.1
2028=============
2029
2030Release Date: April 11, 2006
2031
2032- Added a :doc:`Unit Testing Library <./libraries/unit_testing>`.
2033- Added the ability to pass objects to the **insert()** and
2034 **update()** database functions. This feature enables you to (among
2035 other things) use your :doc:`Model class <./general/models>`
2036 variables to run queries with. See the Models page for details.
2037- Added the ability to pass objects to the :doc:`view loading
2038 function <./general/views>`: $this->load->view('my_view',
2039 $object);
2040- Added getwhere function to :doc:`Active Record
2041 class <./database/active_record>`.
2042- Added count_all function to :doc:`Active Record
2043 class <./database/active_record>`.
2044- Added language file for scaffolding and fixed a scaffolding bug that
2045 occurs when there are no rows in the specified table.
2046- Added :doc:`$this->db->last_query() <./database/queries>`, which
2047 allows you to view your last query that was run.
2048- Added a new mime type to the upload class for better compatibility.
2049- Changed how cache files are read to prevent PHP errors if the cache
2050 file contains an XML tag, which PHP wants to interpret as a short
2051 tag.
2052- Fixed a bug in a couple of the active record functions (where and
2053 orderby).
2054- Fixed a bug in the image library when realpath() returns false.
2055- Fixed a bug in the Models that was preventing libraries from being
2056 used within them.
2057- Fixed a bug in the "exact_length" function of the validation class.
2058- Fixed some typos in the user guide
2059
2060Version 1.3
2061===========
2062
2063Release Date: April 3, 2006
2064
2065- Added support for :doc:`Models <general/models>`.
2066- Redesigned the database libraries to support additional RDBMs
2067 (Postgres, MySQLi, etc.).
2068- Redesigned the :doc:`Active Record class <./database/active_record>`
2069 to enable more varied types of queries with simpler syntax, and
2070 advanced features like JOINs.
2071- Added a feature to the database class that lets you run :doc:`custom
2072 function calls <./database/call_function>`.
2073- Added support for :doc:`private functions <general/controllers>` in your
2074 controllers. Any controller function name that starts with an
2075 underscore will not be served by a URI request.
2076- Added the ability to pass your own initialization parameters to your
2077 :doc:`custom core libraries <general/creating_libraries>` when using
2078 $this->load->library()
2079- Added support for running standard :doc:`query string URLs <general/urls>`.
2080 These can be optionally enabled in your config file.
2081- Added the ability to :doc:`specify a "suffix" <general/urls>`, which will be
2082 appended to your URLs. For example, you could add .html to your URLs,
2083 making them appear static. This feature is enabled in your config
2084 file.
2085- Added a new error template for use with native PHP errors.
2086- Added "alternator" function in the :doc:`string
2087 helpers <./helpers/string_helper>`.
2088- Removed slashing from the input class. After much debate we decided
2089 to kill this feature.
2090- Change the commenting style in the scripts to the PEAR standard so
2091 that IDEs and tools like phpDocumenter can harvest the comments.
2092- Added better class and function name-spacing to avoid collisions with
2093 user developed classes. All CodeIgniter classes are now prefixed with
2094 CI\_ and all controller methods are prefixed with _ci to avoid
2095 controller collisions. A list of reserved function names can be
2096 :doc:`found here <general/controllers>`.
2097- Redesigned how the "CI" super object is referenced, depending on
2098 whether PHP 4 or 5 is being run, since PHP 5 allows a more graceful
2099 way to manage objects that utilizes a bit less resources.
2100- Deprecated: $this->db->use_table() has been deprecated. Please read
2101 the :doc:`Active Record <./database/active_record>` page for
2102 information.
2103- Deprecated: $this->db->smart_escape_str() has been deprecated.
2104 Please use this instead: $this->db->escape()
2105- Fixed a bug in the exception handler which was preventing some PHP
2106 errors from showing up.
2107- Fixed a typo in the URI class. $this->total_segment() should be
2108 plural: $this->total_segments()
2109- Fixed some typos in the default calendar template
2110- Fixed some typos in the user guide
2111
2112Version 1.2
2113===========
2114
2115Release Date: March 21, 2006
2116
2117- Redesigned some internal aspects of the framework to resolve scoping
2118 problems that surfaced during the beta tests. The problem was most
2119 notable when instantiating classes in your constructors, particularly
2120 if those classes in turn did work in their constructors.
2121- Added a global function named
2122 :doc:`get_instance() <general/ancillary_classes>` allowing the main
2123 CodeIgniter object to be accessible throughout your own classes.
2124- Added new :doc:`File Helper <./helpers/file_helper>`:
2125 delete_files()
2126- Added new :doc:`URL Helpers <./helpers/url_helper>`: base_url(),
2127 index_page()
2128- Added the ability to create your own :doc:`core
2129 libraries <general/creating_libraries>` and store them in your local
2130 application directory.
2131- Added an overwrite option to the :doc:`Upload
2132 class <./libraries/file_uploading>`, enabling files to be
2133 overwritten rather than having the file name appended.
2134- Added Javascript Calendar plugin.
2135- Added search feature to user guide. Note: This is done using Google,
2136 which at the time of this writing has not crawled all the pages of
2137 the docs.
2138- Updated the parser class so that it allows tag pars within other tag
2139 pairs.
2140- Fixed a bug in the DB "where" function.
2141- Fixed a bug that was preventing custom config files to be
2142 auto-loaded.
2143- Fixed a bug in the mysql class bind feature that prevented question
2144 marks in the replacement data.
2145- Fixed some bugs in the xss_clean function
2146
2147Version Beta 1.1
2148================
2149
2150Release Date: March 10, 2006
2151
2152- Added a :doc:`Calendaring class <./libraries/calendar>`.
2153- Added support for running :doc:`multiple
2154 applications <general/managing_apps>` that share a common CodeIgniter
2155 backend.
2156- Moved the "uri protocol" variable from the index.php file into the
2157 config.php file
2158- Fixed a problem that was preventing certain function calls from
2159 working within constructors.
2160- Fixed a problem that was preventing the $this->load->library function
2161 from working in constructors.
2162- Fixed a bug that occurred when the session class was loaded using the
2163 auto-load routine.
2164- Fixed a bug that can happen with PHP versions that do not support the
2165 E_STRICT constant
2166- Fixed a data type error in the form_radio function (form helper)
2167- Fixed a bug that was preventing the xss_clean function from being
2168 called from the validation class.
2169- Fixed the cookie related config names, which were incorrectly
2170 specified as $conf rather than $config
2171- Fixed a pagination problem in the scaffolding.
2172- Fixed a bug in the mysql class "where" function.
2173- Fixed a regex problem in some code that trimmed duplicate slashes.
2174- Fixed a bug in the br() function in the HTML helper
2175- Fixed a syntax mistake in the form_dropdown function in the Form
2176 Helper.
2177- Removed the "style" attributes form the form helpers.
2178- Updated the documentation. Added "next/previous" links to each page
2179 and fixed various typos.
2180
2181Version Beta 1.0
2182================
2183
2184Release Date: February 28, 2006
2185
2186First publicly released version.