CUNY Graduate Center - Project Tracking System: Issueshttps://redmine.gc.cuny.edu/https://redmine.gc.cuny.edu/favicon.ico2023-04-27T17:04:08ZCUNY Graduate Center - Project Tracking System
Redmine CUNY Academic Commons - Support #18128 (Resolved): Question about Jetpack on news.commons.gc.cuny...https://redmine.gc.cuny.edu/issues/181282023-04-27T17:04:08ZRaymond Hoh
<p>I was looking at our Cavalcade logs for failed scheduled tasks and most of the recent, failed tasks come from the Jetpack plugin on <code>news.commons.gc.cuny.edu</code>. In an attempt to fix this, I have reset all Jetpack options on <code>news.commons.gc.cuny.edu</code>.</p>
<p>I'm adding Scott and Colin as watchers to this ticket. Do we use Jetpack extensively on <code>news.commons.gc.cuny.edu</code>? If so, can either one of you re-enable and reconfigure the Jetpack modules that were being used on the site? Here's a direct link to the Jetpack modules page: <a class="external" href="https://news.commons.gc.cuny.edu/wp-admin/admin.php?page=jetpack_modules">https://news.commons.gc.cuny.edu/wp-admin/admin.php?page=jetpack_modules</a> .</p>
<p>If Jetpack is not vital for <code>news.commons.gc.cuny.edu</code>, it maybe worthwhile to disable the Jetpack plugin entirely.</p> CUNY Academic Commons - Bug #17240 (Resolved): Update Events Calendar Pro to v6.0.11https://redmine.gc.cuny.edu/issues/172402022-11-15T21:43:47ZRaymond Hoh
<p>Hi Matt,</p>
<p>There's a new update for Events Calendar Pro (v6.0.3). Can you attach the latest version to this ticket? Thanks!</p> CUNY Academic Commons - Bug #16792 (Resolved): Update Two Factor plugin to 0.7.2https://redmine.gc.cuny.edu/issues/167922022-09-13T17:46:54ZRaymond Hoh
<p>As Jeremy mentioned there is a new, security update for the Two Factor plugin.</p>
<p>The main change is <a class="external" href="https://github.com/WordPress/two-factor/pull/453">https://github.com/WordPress/two-factor/pull/453</a>. (Specifically, <a class="external" href="https://github.com/WordPress/two-factor/pull/453/commits/5ff442a9ba868ade098826d5afcf71104ac1407b.">https://github.com/WordPress/two-factor/pull/453/commits/5ff442a9ba868ade098826d5afcf71104ac1407b.</a>) And the <code>two-factor</code> plugin is now hashing the key that generates the login nonce instead of leaving it in the clear in user meta.</p>
<p>I don't think this necessitates pushing an update to production immediately as an attacker would need DB access in order to fetch the key. Also login nonces are deleted immediately after successful 2FA logins, so the attack vector is minimal.</p>
<p>I'll stage the update for 2.0.8 for now and we can make a decision whether we want to push it to production before the next maintenance update.</p> CUNY Academic Commons - Bug #15254 (Resolved): Event Tickets plugin can create new user accounts ...https://redmine.gc.cuny.edu/issues/152542022-02-03T22:46:14ZRaymond Hoh
<p>Just encountered an issue on the NYCDH site where the Event Tickets plugin was activated on the sub-site and it was able to bypass the main BuddyPress registration page.</p>
<p>The Events Tickets plugin has a RSVP module that will allow a user to RSVP for an event through a web form. This web form doesn't require a user to be authenticated and will create a new user in WordPress by default. It is possible to to allow only logged-in users to RSVP for an event, but this option must be enabled under "Events > Settings > Tickets" in the admin dashboard.</p>
<p>Will look to only allow logged-in users to RSVP for events with a code snippet.</p> CUNY Academic Commons - Bug #13721 (Resolved): Update Contact Form 7https://redmine.gc.cuny.edu/issues/137212020-12-18T01:26:39ZRaymond Hoh
<p>Latest version (v5.3.2) of Contact Form 7 fixes a security vulnerability.</p>
<p>Going to update and push a hotfix on production.</p> CUNY Academic Commons - Bug #12850 (Resolved): Event Tickets plugin calls wp_cache_flush() after ...https://redmine.gc.cuny.edu/issues/128502020-05-26T17:27:13ZRaymond Hoh
<p>Saw the following notice in the error logs:</p>
<pre>
PHP Warning: wp_cache_flush() used, this is broadly not recommended. Called in /wp-content/plugins/event-tickets/src/Tribe/Cache/Transient_Cache.php line 34 in /wp-content/object-cache/object-cache-memcached-hm.php on line 292
</pre>
<p>I've sent a <a href="https://github.com/moderntribe/event-tickets/pull/1673" class="external">fix</a> to the plugin authors and have patched 1.16.x branch.</p> CUNY Academic Commons - Feature #12654 (Resolved): Update Google Docs Shortcode to v0.5https://redmine.gc.cuny.edu/issues/126542020-04-14T06:51:36ZRaymond Hoh
<p>v0.5 introduces support for the Block Editor with the new "Google Drive" block.</p>
<p>Documentation can be found <a href="https://github.com/cuny-academic-commons/google-docs-shortcode/wiki" class="external">here</a></p>
<p>Attached you can find a GIF.</p> CUNY Academic Commons - Bug #12606 (Resolved): Disable PHP sessions for Custom Sidebars pluginhttps://redmine.gc.cuny.edu/issues/126062020-04-02T17:08:14ZRaymond Hoh
<p>I see a bunch of errors in the log for the <code>custom-sidebars</code> plugin relating to PHP sessions:</p>
<pre>
[Thu Apr 02 02:05:35 2020] [warn] [pid 29576] sapi_apache2.c(351): [client 154.20.100.138:50413] PHP Warning: session_start(): Failed to read session data: memcached (path: X:11211?persistent=1&amp;weight=2&amp;timeout=10&amp;retry_interval=10) in /wp-content/plugins/custom-sidebars/inc/external/wpmu-lib/inc/class-thelib.php on line 145
</pre>
<p>I've disabled PHP sessions when testing locally with the <code>'wdev_lib-use_session'</code> filter - <a class="external" href="https://github.com/cuny-academic-commons/cac/blob/1.16.x/wp-content/plugins/custom-sidebars/inc/external/wpmu-lib/inc/class-thelib.php#L117">https://github.com/cuny-academic-commons/cac/blob/1.16.x/wp-content/plugins/custom-sidebars/inc/external/wpmu-lib/inc/class-thelib.php#L117</a></p>
<p>And it appears that sessions are only used to display admin notices in the dashboard. During testing, even though the admin notices no longer showed up, the functionality of the plugin worked just fine.</p>
<p>This filter is only used in the <code>custom-sidebars</code> plugin so it should be safe to roll with turning sessions off.</p>
<p>Let me know what you think, Boone.</p> CUNY Academic Commons - Bug #12594 (Resolved): Remove Backtype Connect pluginhttps://redmine.gc.cuny.edu/issues/125942020-03-31T17:09:57ZRaymond Hoh
<p>I'm just going through the error logs to see what we can do about the server problem and I noticed an error for the <code>backtype-connect</code> plugin.</p>
<p>Just did some research and Backtype was acquired by Twitter and their site/API is no longer available, so we can remove this plugin from the Commons.</p>
<p>I've slated the removal this for 1.17, but we can remove for a 1.16.x maintenance release as well if we wanted to.</p> CUNY Academic Commons - Bug #12240 (Resolved): wp-ms-request-membership not added properly as a g...https://redmine.gc.cuny.edu/issues/122402019-12-27T18:01:20ZRaymond Hoh
<p>Boone, I was noticing a lot of build errors on CircleCI.</p>
<p>It turns out I didn't properly add the gitsubmodule for <code>wp-ms-request-membership</code> when implementing <a class="issue tracker-2 status-5 priority-4 priority-default closed" title="Feature: Add "Request to Join this Site" button? (Resolved)" href="https://redmine.gc.cuny.edu/issues/11201">#11201</a>. This meant the "request membership to a site" feature did not roll out properly during the initial release of 1.16.</p>
<p>Will add it and deploy as a hotfix on production.</p> CUNY Academic Commons - Bug #11335 (Resolved): Add mobile responsive styles for Creative Commons ...https://redmine.gc.cuny.edu/issues/113352019-04-16T17:06:09ZRaymond Hoh
<p>Reported by Scott here: <a class="external" href="https://commons.gc.cuny.edu/?p=75786">https://commons.gc.cuny.edu/?p=75786</a></p>
<p>The "Choose a License" modal is not responsive on devices with small screen widths.</p> CUNY Academic Commons - Bug #10564 (Resolved): PHP 7.2 Incompatibility Problemshttps://redmine.gc.cuny.edu/issues/105642018-10-19T15:46:22ZRaymond Hoh
<p>Saw this in the error logs.</p>
<p>Sociable is one of the plugins we hide from sites that do not have it already activated. It uses <code>split()</code>, which has been removed in PHP 7.0.</p>
<p>Not sure why our linter did not pick this up. Going to apply a hotfix in a bit.</p> CUNY Academic Commons - Bug #9810 (Resolved): Yoast SEO doesn't support the Guest Authors feature...https://redmine.gc.cuny.edu/issues/98102018-05-21T22:38:50ZRaymond Hoh
<p>See <a class="external" href="https://redmine.gc.cuny.edu/issues/9729#note-10">https://redmine.gc.cuny.edu/issues/9729#note-10</a></p>
<blockquote>
<p>One more question: The meta data that I am adding to Guest Author pages through Yoast (title tags & meta descriptions) do not seem to be taking. It seems that the primary Author meta info remains. For instance, as you can see on Adam Hilton's guest author page (<a class="external" href="https://newlaborforum.commons.gc.cuny.edu/?author_name=adam-hilton">https://newlaborforum.commons.gc.cuny.edu/?author_name=adam-hilton</a>), I have added Yoast SEO overrides, but the default author info (Samantha Valente) continues to show.</p>
</blockquote> CUNY Academic Commons - Bug #4985 (Resolved): ZenDesk Feedback Tab is being deprecatedhttps://redmine.gc.cuny.edu/issues/49852015-12-07T19:23:44ZRaymond Hoh
<p>We currently rely on an older feature in ZenDesk called the "Feedback Tab" to generate our ZenDesk form in the WP admin bar.</p>
<p>ZenDesk informed us that this feature is now scheduled to be removed on November 2016.</p>
<p>We will have to either use ZenDesk's newer Web Widget API or create a custom form handler ourselves.</p>
<p>Read <a class="external" href="https://redmine.gc.cuny.edu/issues/3660#note-8">https://redmine.gc.cuny.edu/issues/3660#note-8</a> and on for some background info.</p> CUNY Academic Commons - Bug #3402 (Resolved): Clicking subnav tabs on "News" tab does not workhttps://redmine.gc.cuny.edu/issues/34022014-08-26T00:22:53ZRaymond Hoh
<p>When you're on the "News" tab and you're logged in, clicking on any of the subnav tabs (My Friends, My Groups, etc.) does nothing.</p>
<p>This is because of commit fefc5f30 to address <a class="issue tracker-2 status-5 priority-4 priority-default closed" title="Feature: Creating a Blog, Creating a Group (Resolved)" href="https://redmine.gc.cuny.edu/issues/2135">#2135</a>:<br /><a class="external" href="https://github.com/castiron/cac/commit/fefc5f308f0bb2b7be92210e0cf41a681aa3ce2c">https://github.com/castiron/cac/commit/fefc5f308f0bb2b7be92210e0cf41a681aa3ce2c</a></p>
<p>I'm going to add a fix for this in 1.7.x branch for testing on cdev in a bit.</p>