Upcoming critical contributed project security release on September 23, 2026 - PSA-2026-09-21 Read post
Druid
@druid.fi
We are the uncompromising and uncomplicated software house. We design and implement high-quality digital solutions with passion and technological expertise. Open source, open attitude. https://druid.fi/en/ #Drupal #Mautic #Symfony
API Platform 4.4 and 5.0 - Are APIs Still Relevant in the AI Era? soyuka.me/api-platform...
API Platform 4.4 and 5.0 - Are APIs Still Relevant in the AI Era? · soyuka.me
API Platform 4.4 and 5.0 are out, released live on stage at the API Platform Conference in Lille. Filters, HTTP QUERY, MCP and a yearly major.
soyuka.me
Mautic 7.2.0 Lynx Edition is here! Transactional emails, A/B testing, MMS, Marketplace updates, user invitations and 322 refactoring PRs are among the highlights. Blog: mautic.org/blog/mautic-... Release notes: github.com/mautic/mauti... #Mautic #OpenSource
If you want to test-drive Drupal 11 on #FrankenPHP - you can use this repo to quickly spin it up ⚡ github.com/dunglas/fran... @dunglas.dev @marko.bluesky.druid.fi
GitHub - dunglas/frankenphp-drupal: Drupal on FrankenPHP
Drupal on FrankenPHP. Contribute to dunglas/frankenphp-drupal development by creating an account on GitHub.
github.com
Introducing Symfony Reprise: The Symfony Integration Layer for Modern Bundlers ➡️ https://symfony.com/blog/introducing-symfony-reprise-the-symfony-integration-layer-for-modern-bundlers
The Drupal AI Initiative has launched The AI Byte, a planned monthly newsletter. Its first issue curates Drupal AI 1.4.0, summit recordings, initiative workstreams, and upcoming learning sessions. https://bit.ly/4vLXBe6 #Drupal #DrupalAI #OpenSource #Newsletter
Drupal AI Initiative Launches The AI Byte as Monthly Newsletter
Drupal AI activity now spans releases, events, workstreams, and training sessions. The new briefing brings those updates into one recurring publication.
bit.ly
FrankenPHP 1.12.5 is a security release. Upgrade if you run the official Docker images or the session extension as a shared module. Fixed: the default Docker welcome page ran phpinfo() (env vars, php.ini, system paths, all exposed). Now a static page with nothing to leak.
Are your #Drupal site already updated? Ours are.
Drupal core 11.4.4, 11.3.14, and 10.6.13 fix two XSS issues and one information disclosure issue. Drupal 10’s HTMX change hardens affected contrib modules. https://bit.ly/4hg6DMP #Drupal #DrupalCore #DrupalSecurity
Drupal 11.4.0 was released - Biggest performance improvement of the decade 🚀 - More with #PHP attributes - Utilize symfony/runtime and open way to use FrankenPHP - Gin administrative theme has been added to Drupal core - Improvements for faster security updates - CLI www.drupal.org/blog/drupal-...
🔒 API Platform CVE-2026-49858: JSON:API & HAL normalizers cached components across users on long-running runtimes (FrankenPHP, RoadRunner, Swoole). Patched in 4.1.29 / 4.2.25 / 4.3.8 — upgrade now. github.com/api-platform...
Cross-user attribute leak in JSON:API and HAL item normalizers due to missing isCacheKeySafe gate
### Impact `#[ApiProperty(security: ...)]` is evaluated per request to decide whether a property is exposed. The `componentsCache` arrays in `ApiPlatform\JsonApi\Serializer\ItemNormalizer` and `Ap...
github.com
FrankenPHP 1.12.4 is out, a security hardening release. Underscore header spoofing is now blocked at the server layer (Caddy 2.11.4), bundled Mercure 0.24.2 security fixes land, plus worker-mode crash and race fixes. Every user should upgrade. github.com/php/frankenp...
Release v1.12.4 · php/frankenphp
FrankenPHP 1.12.4 is a hardening and stability release. It pulls in upstream security fixes from Caddy 2.11.4 and Mercure 0.24.2, closes a class of HTTP header spoofing, and fixes several crashes a...
github.com
🚀 Mautic 7.2.0 RC Lynx Edition is out. RC for testing only. Top 3: transactional emails ignoring DNC, better bot filtering, global defaults preference center and UTM. Release note: github.com/mautic/mauti... Feedback is welcome through GitHub or Slack channel (#mautic-7). #MauticUpdate
📢 Product update: new security releases are now available for Mautic: 4.4.20 ELTS 5.2.11 Capella Edition 6.0.9 7.1.2 Aludra Edition Release notes: github.com/mautic/mauti... github.com/mautic/mauti... github.com/mautic/mauti... ELTS: mautic.org/extended-lon... #Mautic #OpenSource
Symfony 8.1 curated new features https://symfony.com/blog/symfony-8-1-curated-new-features
🌟 Symfony 8.1.0 released ➡️ https://symfony.com/blog/symfony-8-1-0-released
Be ready to update Twig and Symfony TODAY. Security issues are all the rage in the era of advanced LLMs! I’ve been deep in that tunnel for the past 10 days, finally seeing the light at the end 🥵
Biggest security patch release ever for #Symfony today!
During the last few weeks, the #Symfony core team has been hard at work fixing a long list of vulnerabilities for both #Symfony and #Twig. Today, we're publishing that work in the biggest security patch releases ever. Bare with us and wish us luck 🍀
Druid is working on during release window to patch our #Drupal sites 🫡 🧑🚒🔥🚒🧯
Upcoming highly critical release on May 20, 2026 - PSA-2026-05-18 Read post
Phil Norton has published a Drupal 11 tutorial demonstrating HTMX-based node view mode previews. The example combines entity rendering, HTMX requests, and partial page updates without relying on traditional AJAX callbacks. https://bit.ly/4uJa8in #Drupal #Drupal11 #HTMX
Phil Norton Demonstrates HTMX-Based Node View Mode Previews in Drupal 11
Dynamic node rendering and HTMX-driven form interactions are central themes in a recent Drupal 11 tutorial from Phil Norton exploring node display mode previews. The article demonstrates how Drupal forms, HTMX requests, and entity view builders can b...
bit.ly
Announcing Mautic 7.1.0: Canis Major 🚀 Improved campaign builder, reporting & forms, privacy-aware tracking, PHP 8.5 support, plus performance updates & bug fixes. 👉 github.com/mautic/mauti... #Mautic #OpenSource #Mautic7
Sandboxed Coding Agents, Dev Containers and Hot Reloading with FrankenPHP 😍 💪 #PHP #Symfony #FrankenPHP
Coding at the Speed of Thought: The New Era of Symfony Docker dunglas.dev/2026/03/codi...
🧟 Official native Windows support for FrankenPHP is here 🪟🚀 dunglas.dev/2026/03/wind...
Windows Support for FrankenPHP: It’s Finally Alive! - Kévin Dunglas
It’s happening! I am thrilled to announce the immediate availability of official Windows support for FrankenPHP. Since the project's initial release, this has been by far the most requested feature.…
dunglas.dev
FrankenPHP 1.12.1 is out! It fixes some bugs introduced in 1.12.0. github.com/php/frankenp...
Release v1.12.1 · php/frankenphp
What's Changed 🐛 Bug Fixes Fix PHP startup errors when ini files contain environment variables by @henderkes in #2252 Fix sigsev on bind permissions denied by @henderkes in #2251 📖 Documentation ...
github.com
drupalorg-cli 0.8.0 is out. Native GitLab issue fork and MR commands, agent skills for AI-assisted Drupal.org contributions, and an MCP server. mglaman.dev/blog/drupalo...
drupalorg-cli 0.8.0: GitLab issue fork and merge request commands
The 0.7.0 release was housekeeping — fixing the release notes command and clearing out deprecation warnings. 0.8.0 has two goals: add native GitLab issue fork and merge request commands, and make the ...
mglaman.dev
FrankenPHP v1.11.3 is now available! 🧟💜 This release focuses on stability and keeping you on the bleeding edge. We’ve upgraded the static binaries to PHP 8.5 and the internal core to Caddy 2.11. github.com/php/frankenp...
Release v1.11.3 · php/frankenphp
This release restores application stability by reverting the unreliable worker mode INI reset introduced in version 1.11.2, upgrades Caddy to 2.11, and bumps the PHP version included in static bina...
github.com
📢 Product update: new security releases are now available for Mautic: 4.4.19 ELTS 5.2.10 Celaeno Edition 6.0.8 Tabit Edition 7.0.1 Elkurud Edition github.com/mautic/mauti... github.com/mautic/mauti... github.com/mautic/mauti... ELTS: mautic.org/extended-lon... #Mautic