zittme 1.0.3 hotfix released — Rhymix 2.1.38 security fixes and a page save error fix
ZITTME CORE RELEASE
zittme 1.0.3
A hotfix that brings in the security fixes from Rhymix 2.1.38 and fixes widget and document pages that could not be saved.
- Released Sep 28, 2026
- Stable
- Rhymix 2.1.38
- 10 changed files
- No database changes
Hello from the zittme team.
We are releasing zittme 1.0.3. It is a maintenance release that ports the security and bug fixes in Rhymix 2.1.38 onto 1.0.2, and it adds no new features. It also fixes the page save error reported on the Q&A board.
WHAT'S CHANGED
What's changed
2 security fixes, 4 bug fixes and 1 version bump, described by the symptoms you would have seen.
Security Rhymix patch
Widget code blocked in the post body filter
The post body filter now strips widget code. Regular members can no longer load site widgets by putting widget code in a post.
Security Rhymix patch
Board header and footer text restricted
Board managers who are not site administrators can no longer edit a board's header and footer text. Because these fields can hold scripts, board managers now see them as read-only.
Bug fix Rhymix patch
Widget and document pages could not be saved
Saving a page no longer fails with the error "the external document path for PC does not exist". Pages that do not use an external path now skip the path check. (Reported by JLPT)
Bug fix Rhymix patch
Header and footer scripts unescaped twice
Scripts an administrator puts in a board's header or footer were unescaped once more on save, which changed their content. This is fixed.
Bug fix Rhymix patch
Cursor on read-only language fields
On read-only language fields in the admin, the multilingual button showed a cursor as if it could be edited. The cursor is now correct.
Bug fix Rhymix patch
Undefined property warning
The undefined property warning written to the error log when loading layout design info is gone.
Version
Version numbers
ZITTME_VERSION 1.0.3 RX_VERSION 2.1.38
HOW TO UPDATE
How to update
There are no database changes, so you only need to overwrite files. Back up your site files before you start.
-
Download the file for your version
On 1.0.2, get
zittme-1.0.3-changed.zip(10 changed files). On 1.0.1 or earlier, getzittme-1.0.3.zip(full package). -
Check the SHA256
Make sure the SHA256 of the downloaded file matches the value listed under Download below.
-
Overwrite your site root
Extract the archive over your site root as is. The
files/folder and config files are not in the zip, so they stay as they are. -
Check the version
Go to Admin > Dashboard and check that the version shows 1.0.3. If the screen still looks the same, run Admin > Regenerate cache files once.
DOWNLOAD
Download and SHA256
zittme-1.0.3-changed.zip 10 changed files, 1.0.2 → 1.0.3 · 51 KB
6067eca9a296dc3fbdf2fc36bc820566a4baf69ea910c51395fb7c5b00119af5
zittme-1.0.3.zip Full package · 13.7 MB
dd98671ced825e8f9214edca3632209d033f7d5f004ea271a2295418f8302f5b
Requirements: GPLv2 · PHP 7.4 or later · MySQL or MariaDB
LINKS
Links
Thank you to Rhymix for providing the security and bug fix patches.
Thank you to JLPT for the report on the Q&A board. If anything is missing or could be better, please send us your feedback at any time. We will use it to keep improving.
바로 업데이트 들어 갑니다.
감사합니다.