We have just released a minor update to AllVideos, version 4.7.0, for Joomla versions 1.5, 2.5 and 3.x.
You are highly recommended to update AllVideos to v4.7.0 if your Joomla site allows frontend editing for your users as an XSS vulnerability was recently discovered and posted in the Joomla VEL. This new release addresses this XSS vulnerability and also introduces a few new features.
In this version:
- Addressed the VEL report listed here:
vel.joomla.org/live-vel/1662-allvideos-version-4-6-1-and-previous
- Updated JWPlayer to version 6.12
- Extended YouTube integration to handle playlist embedding via both playlist IDs and full playlist URLs
- Vine support extended to handle both video IDs as well as full URLs to Vine videos
- QuickTime video embedding has been updated to allow other HTML elements to overlap such media ("wmode" conflict issue as reported here:
www.joomlaworks.net/forum/allvideos/40719-drop-down-menu-behind-video)
- Enabled HTTPS support for all major video providers
- Cleaned up obsolete providers (TwitVid, Justin.tv, TNAOnDemand)
- Switch to HTTPS in embed codes (where possible)
- The "Responsive" layout is now selected by default for new installations
- Added loop (repeat) option where it's allowed (for local/remote media files, YouTube, Vimeo and a few more providers - some will not support this option)
- Other minor fixes in backend parameter styling for Joomla 1.5 and 3.x.
DOWNLOAD
You can download this version by visiting the product's page at:
www.joomlaworks.net/allvideos/
UPGRADING
Just upload the new version and it will overwrite the old one. Visit the plugin parameters page, check if everything is OK and save the parameters.