Welcome, Registration, and other StartingPoints; Foswiki history & Wiki style; All the docs...
Edit | Attach | New | Raw | Delete | History | Print | Tools
You are here: System » ReleaseNotes01x00

Foswiki Release 1.0.4 - 06 Mar 2009

Foswiki - The Free and Open Source Wiki

Foswiki is an enterprise collaboration and information sharing tool targeted for professional use in many types of companies: from small businesses to large organizations.

Foswiki is a wiki: fundamentally, a website with editable web pages. It looks like a normal web site but it encourages contributions, edits, updates, questions, and answers from its users. It's a powerful way of enabling a community to communicate asynchronously using intranet and public internet websites. Foswiki is simple to learn and use. It aims to provide a transparent way for you to publish and exchange your ideas with others over the web and eliminates the one-webmaster syndrome of outdated intranet content.

Foswiki is a structured wiki with tools that enable users without programming skills to build powerful yet simple applications to process information and support workflows. Developers can extend the functionality of Foswiki with plugins.

Foswiki is the old TWiki project under a new name. Restrictions on the use of the TWiki brand resulted in many of its developers continuing the project under the new Foswiki name. Foswiki is backwards compatible with all content from older TWiki installations. Foswiki 1.0 ships with a TWikiCompatibilityPlugin installed and activated by default, thus enabling most extensions made for TWiki to work under Foswiki. Foswiki is released under the GNU General Public License.

Foswiki 1.0 Releases

  • Foswiki 1.0.0, the first Foswiki was released on 09 Jan 2009.
  • Foswiki 1.0.1 was released internally in the development community 23 Feb 2009 but we found a few important bugs that made us decide not to publish it and instead release a 1.0.2. It is a patch release with around 70 bug fixes and only very few minor enhancements.
  • Foswiki 1.0.2 was built 25 Feb 2009 and again we decided to stop the publishing for quality reasons because of one important bug.
  • Foswiki 1.0.3 was built 28 Feb 2009. We decided to stop the publishing because of a severe bug in EditTablePlugin introduced in 1.0.1 when fixing another bug.
  • Foswiki 1.0.4 was built 06 Mar 2009. It is a patch release with more than 90 bug fixes relative to 1.0.0 and only very few minor enhancements.

Pre-installed Extensions

Foswiki 1.0 is shipped with the following:

  • Plugins: CommentPlugin, EditTablePlugin, EmptyPlugin, InterwikiPlugin, PreferencesPlugin, RenderListPlugin, SlideShowPlugin, SmiliesPlugin, SpreadSheetPlugin, TablePlugin, TinyMCEPlugin, TwistyPlugin, WysiwygPlugin
  • Contribs: BehaviourContrib, JSCalendarContrib, MailerContrib, TipsContrib, TopicUserMappingContrib
  • Skins: PatternSkin
  • Compatibility support - TWikiCompatibilityPlugin

What's new — highlights

  • Foswiki 1.0 is built on a new platform called Foswiki Stand Alone which adds support for FastCGI and enables more optimized functionality in mod_perl and other similar runtime environments. Foswiki Stand Alone also enables future features such as running Foswiki by itself without a separate web server (for example, from a stand alone memory key). You can ensure your applications and plugins will work properly on the new platform (and thus with any future capabilities dependent on the new architecture) by testing them out now with Foswiki 1.0.
  • A TWikiCompatibilityPlugin has been created that enables most extensions made for TWiki to work under Foswiki, and to support seamless migrations from TWiki to Foswiki.
  • The PatternSkin has been given a facelift: The PatternSkin topic offers a choice of multiple themes, the sidebar can be placed either on the left or right, a frame can be added around the main content area, and a TWiki theme is available to make it easier for those upgrading from TWiki (dimensions such as the top bar size match the dimensions in the TWiki PatternSkin).
  • The "Advanced Search" page now supports a query-based search.
  • A new section type, "expandvariables", adds better control over macro expansion in topic templates. You can now create template topics with sections where all macros contained within the sections are expanded.
  • A "Copy topic" feature is now present in the "More topic actions" tools.
  • IF conditions has been expanded with an "isempty" test condition.
  • viewfile script can be used as a webserver ErrorDocument enabling both more secure attachments and user focused error dialogs.
  • The Foswiki tgz / zip distribution file now has a top-level directory — Foswiki-x.y.z (x.y.z representing the version) — in which all of its files and subdirectories are contained.

Security Updates

Foswiki is much more secure than TWiki 4.2.4.

  • Foswiki 1.0 has secured by default the powerful but also vulnerable URLPARAM macro against cross site scripting (XSS) attacks. URLPARAM now by default encodes a short list of unsafe characters '"<>% which eliminates most XSS possibilities encountered with URLPARAM. This protects all topics using the URLPARAM macro without requiring any changes to them.
  • Functions QUERYPARAMS, ORIGURL (skin macro) are secured against XSS attacks. QUERYPARAMS, like URLPARAM, is now encoded with the new, safe encoding.
  • The print preview link is no longer vulnerable to XSS attacks.
  • Additional security fixes have been made, based on security audits performed by the Foswiki team. Sensitive data from the topic text and web client requests are validated for safety.

Upgrading From TWiki 4.2

Foswiki is compatible with content of TWiki releases up to and including 4.2, as part of its design.

As part of the creation of the Foswiki project, the Foswiki community is evaluating all of the hundreds of extensions that are available for TWiki. All that are working are ported over to the Foswiki name space. Many of them are being enhanced through the removal of bugs and security vulnerabilities, resulting in better, more functional plugins for Foswiki. The most popular plugins are already ported and more are added every day.

Terminology changes in Foswiki

As part of the first Foswiki product release, various topics and terms were changed to avoid using the TWiki brand name and to more accurately reflect their purpose, including the following:

  • The TWiki web is now called System, as it contains configuration information for the entire Foswiki installation. The TWikiCompatibilityPlugin provides backwards compatible support for references to the TWiki web, in order to facilitate migrations from TWiki to Foswiki.
  • The %TWIKIWEB% and %MAINWEB% variables are now called %SYSTEMWEB% and %USERSWEB%
  • Topics in the Foswiki distribution have been renamed to eliminate the TWiki word and to make the titles more readable (for example, Plugins, Skins, and so forth).
  • All templates, CSS and Javascript names have been changed from twikiXxxxx to foswikiXxxxx
  • Key terminology changes:
TWiki term Foswiki term
TWiki variable Macro
preference(s) variable preference setting, or macro when referring to expansion of same
TWiki form Data form
TWiki Plugin Plugin
TWiki Template Skin Template
Topic Template Template Topic
TWiki Markup Language (TML) Topic Markup Language (TML)
TWiki Application Wiki Application

Topic names changed in System web (former TWiki web)

Old name New name
ATasteOfTWiki BeginnersStartHere
TWikiAccessControl AccessControl
TWikiAddOns ContributedAddOns
TWikiContribs Contribs
TWikiContributor ProjectContributor
TWikiCss CascadingStyleSheets
TWikiDocGraphics DocumentGraphics
TWikiDocumentation CompleteDocumentation
TWikiDownload DownloadSources
TWikiEditingShorthand EditingShorthand
TWikiEnhancementRequests EnhancementRequests
TWikiFaqTemplate FaqTemplate
TWikiFAQ FrequentlyAskedQuestions
TWikiForms DataForms
TWikiGlossary GlossaryOfTerms
TWikiHistory ReleaseHistory
TWikiInstallationGuide InstallationGuide
TWikiJavascripts JavascriptFiles
TWikiLogos ProjectLogos
TWikiMetaData MetaData
TWikiPlugins Plugins
TWikiPreferences DefaultPreferences
TWikiReferenceManual ReferenceManual
TWikiRegistration UserRegistration
TWikiReleaseNotes04x02 ReleaseNotes01x00
TWikiRenderingShortcut RenderingShortcut
TWikiScripts CommandAndCGIScripts
TWikiShorthand ShortHand
TWikiSiteTools SiteTools
TWikiSkinBrowser SkinBrowser
TWikiSkins Skins
TWikiSystemRequirements SystemRequirements
TWikiTemplates SkinTemplates
TWikiTemplates TemplateTopics
TWikiTopics TopicsAndWebs
TWikiTutorial TwentyMinuteTutorial
TWikiUpgradeGuide UpgradeGuide
TWikiUserAuthentication UserAuthentication
TWikiUsersGuide UsersGuide
TWikiVariablesQuickStart MacrosQuickStart
TWikiVariables Macros
TWikiWebsTable WebsTable
TWikiRegistrationAgent RegistrationAgent

TWikiPlannedFeatures, TWikiReleaseNotes04x00, TWikiSite, and WhatDoesTWikiStandFor have been removed.

Topic names changed in System web (former TWiki web)

Old name New name
TWikiAdminGroup AdminGroup
TWikiGroupTemplate GroupTemplate
TWikiPreferences SitePreferences
TWikiGroups WikiGroups
TWikiContributor ProjectContributor
TWikiUsers WikiUsers
TWikiGuest WikiGuest
TWikiRegistrationAgent RegistrationAgent
TWikiAdminUser AdminUser

Note that the change from TWikiAdminGroup to AdminGroup has no practical implication when upgrading from TWiki to Foswiki. The topics with an ALLOW setting set to TWikiAdminGroup will still prevent users from accessing or editing and the AdminGroup members can edit anything. You must however make sure the TWikiAdminGroup topic exists in the Main web and that it is protected against editing: when migrating, make sure it is copied over from the old Main web along with all other user and group topics.

When you upgrade from TWiki, copy the old TWikiUsers topic to WikiUsers and manually add the AdminUser, ProjectContributor, and RegistrationAgent users.

Your old Main.TWikiPreferences settings must be copied to the new Main.SitePreferences topic.

Important Changes since Foswiki 1.0.0

Fixed 70 bugs since Foswiki 1.0.0. Quite many of these are bugs that originate from TWiki 4.2.3. The most important bugs are

  • Fixed some bugs related to expired sessions and date in session cookies.
  • Fixed a number of bugs in configure related to installation of extensions
  • Fixed a bug that prevented proper operation with https
  • Fixed a bug related to VIEW_TEMPLATE and preview
  • Fixed a bug related to RcsLite corrupting topic history
  • Enhanced the user interface of configure
  • Added approx. 30 more bugs to the list of bugs fixed in 1.0.0 that we missed in the 1.0.0 version of these release notes.

See full list of fixed bugs below.

Important Changes since TWiki 4.2.3

If this release had been a TWiki release it would have been 4.3.0

Since the fork of Foswiki happened while TWiki 4.2.3 was the current release, all changes since this release are listed below.

Foswiki Release 1.0.0 Details


Item38 Replace backtick, exec and system calls to use Sandbox..
Item41 Remove the duplicate TAG topics - like VarREVINFO and VarREVINFO2
Item42 SECURITY: REVINFO reveals info for a topic the user does not have permission to view.
Item67 Any topic that contains a webform that does not exist, causes the topic to be uneditable.
Item94 SubscribePlugin trips up on missing _alert()
Item109 Rename all topics that have the T-word in them
Item110 Replace all occurences of TWiki in core, docs and default plugins with System
Item113 Rebrand css classes from twikiXxxxx to foswikiXxxxxx
Item115 Delete ClassicSkin
Item116 Rebrand javascript classes
Item124 undefined ICONTOPIC causes crash
Item125 Search error 'grep for \btest\b failed..
Item128 Error in oopsmore
Item136 remove pattern skin css classes from default skin - replace with twiki* ready for re-brand
Item137 Register show user's a failure when sendmail returns non-zero
Item139 Do not use an Oops redirect when a URL is mistyped
Item168 Review all SEARCH statements in the docco & convert to query or more contemporary TML
Item175 Create TWiki compatibility plugin
Item191 remove the stupid kids from pattern skin
Item203 Rebrand the TipsContrib
Item205 Replace all TWiki webnames to System
Item206 Linking to Supplemental Documents
Item212 stop url(http://... something.png) from being made into a html link, so inline images in css style isn't terminal
Item217 Replace module/plugin of message at the top of source files
Item218 Change the links in plugins to foswiki.org
Item221 Change Interwiki links in docs to Foswiki
Item230 lib/CPAN/lib missing in INC path
Item240 Interval parser is a bit crap; no tests, and does too much work
Item244 nonwikiword is never really checked
Item254 add -Autoconf to pseudo-install.pl
Item264 Rebrand pattern skin
Item265 Rebranding EditTablePlugin for Foswiki
Item267 Update file table in plugins that contains TWiki directories
Item273 Rename twiki.tmpl -> foswiki.tmpl
Item253 Remove hack from Foswiki.pm
Item287 Plugins documentation is incomplete
Item295 Replacing TWiki with Foswiki in core docs and default plugins
Item297 viewfile can't be used as a dropin replacement for {pubUrl}, and when viewfile fails it redirects to an oops mess
Item300 Rebranding root-level documentation
Item308 Preview renders a zero byte page when topic uses a view_template
Item309 Checkpoint save fotgets edit_template
Item312 Main.UserForm does not override TWiki.UserForm
Item314 Potential inadvertant linking on registration completion page
Item318 if you have a trailing / on your url, foswiki assumes all preceeding parts of the URL are webnames
Item319 Rewrite all SEARCH's in the distributed topics to use querySearch
Item327 Rebranding TablePlugin
Item328 Rebranding SmiliesPlugin for Foswiki
Item347 Rebranding SpreadSheetPlugin
Item367 Rebranding RenderListPlugin
Item370 Replace the favicon to Foswiki - and make the default setting come from System.ProjectLogos
Item375 Eliminate use of URLPARAM in docs so it becomes an XSS trap
Item384 Improve function getElementsByClassName
Item385 Improve layout attachment button and form header. Add attachment counter
Item386 Form.pm calls javascript function launchWindow
Item391 QUERYPARAMSTRING and TOC only url encodes parameter values but not the names
Item393 Add default safe encoding for QUERYPARAMS and add "safe" type to ENCODE
Item401 OSX fails unit tests - notably UTF8 seg faults.
Item405 ORIGURL used in template login used for example for reset password is an XSS attach vector
Item406 WebSearch does not work with quoted word strings.
Item407 WebRss and Atom search does not work with quotes words
Item417 Undefined subroutine &Foswiki::Users:: ApacheHtpasswdUser::ListIterator called
Item418 Rebranding SlideShowPlugin
Item427 Url parameters lost after login, when login has triggered by the "login-link"
Item444 Adding a anchor "foswikiTOC" for the TOC to be able to jump up to it
Item462 Improved user interface and interaction on the topic that is shown when a topic does not exist
Item471 WebSearch and WebSearchAdvanced keep moveing the user to the TWiki web, rather than staying where the users asked to be
Item474 PreferencesPlugin does not understand Local
Item486 Beginners start here has obsolete content
Item491 UserListByPhotograph moved to Image Gallery plugin
Item509 Remove un-needed pub/WebPreferences/logo.gif files which are not used and still TWiki logos
Item510 Wysiwyg editor takes the background colour for the html body for the editor instead of applying a white background.
Item511 Twisty on login screen creates slightly invalid markup
Item528 Code validation is weak in places
Item529 fix_local_links needs to point to foswiki.org
Item540 Messages missing in Foswiki.pm for INCLUDE Errors
Item541 calling search bin with no empty search string results in white screen instead of response
Item549 FORMFIELD plugin does not render documented format variables; missing literal tokens
Item567 LoginManager not working with IP matching because of code error in Foswiki's interface to CGI::Session
Item569 ENCODE turns the value 0 into empty string ''
Item570 SPACEOUT fails if value or separator are the string 0
Item599 Get a Foswiki working in Windows with strawberry perl
Item602 Release tarball could be in a subdirectory
Item629 Unable to access root docs on some installations of Apache.
Item649 Only see TWiki as a valid web if TWikiCompatibilityPlugin is installed and enabled.
Item661 Copy edits to Foswiki release 1.0.0 documentation
Item667 Add WebChangesForAllWebs to System web in the release
Item669 VarADDTOHEAD topic appears to be missing
Item681 can't access system webs like _default
Item1607 TOC does not distinguish two headlines that have the same text
Item2525 TablePlugin produces bad links for sorting when using "short" URLs
Item4463 Template Path is wrong for Skin customization using topics
Item4835 SpreadSheetPlugin functions SUBSTITUTE and REPLACE cannot return number 0 or empty string
Item4868 Bulk Register fails if Main web is Set ALLOWWEBCHANGE = TWikiAdminGroup
Item4906 Filename of attachments containing a wikiword inside ( ) messes up the file attachment table and other UI
Item5006 Interwiki rule: change Bugs: to Foswikitask:, and Rev: to Foswikirev:
Item5176 %SCRIPTSUFFIX is added twice in TOC links
Item5213 SCRIPTNAME not defined when using Sun One Web Server
Item5350 NONWIKIWORDFLAG is not resolved
Item5351 WebCreateNewTopic filters out international characters
Item5406 Don't let a skin update break existing left bars and top bar
Item5453 value of "0" improperly handled as param to ENCODE and SPACEOUT
Item5637 Move languages.cache to Working where webserver has permission to write so we can leave Locales read only
Item5848 Number of topics resulting from 2 SEARCH's onthe same topic seems in error (and seems to be duplicated too.
Item5852 Split out operators into seperate modules, so that extensions can plug in new operators.
Item5859 Plugin does not work if using NTLM
Item5900 PatternSkinCustomization and WysiwygPlugin still mention kupu and COMPOSER
Item5910 %TOC variable creates links with unnecessary query string
Item5922 $formfield data not being displayed in formatted searches
Item5926 Topics with Chinese in UTF8 destroys page view in Internet Explorer
Item5937 move initialization of SwitchBoard to TWiki.spec
Item5939 Rogue