Security public service announcements: Drupal 7 and 8 core critical release on April 25th, 2018 PSA-2018-003

Planet Drupal - 23 April 2018 - 9:27am

There will be a security release of Drupal 7.x, 8.4.x, and 8.5.x on April 25th, 2018 between 16:00 - 18:00 UTC. This PSA is to notify that the Drupal core release is outside of the regular schedule of security releases. For all security updates, the Drupal Security Team urges you to reserve time for core updates at that time because there is some risk that exploits might be developed within hours or days. Security release announcements will appear on the security advisory page.

This security release is a follow-up to the one released as SA-CORE-2018-002 on March 28.

  • Sites on 7.x or 8.5.x can immediately update when the advisory is released using the normal procedure.
  • Sites on 8.4.x should immediately update to the 8.4.8 release that will be provided in the advisory, and then plan to update to 8.5.3 or the latest security release as soon as possible (since 8.4.x no longer receives official security coverage).

The security advisory will list the appropriate version numbers for each branch. Your site's update report page will recommend the 8.5.x release even if you are on 8.4.x or an older release, but temporarily updating to the provided backport for your site's current version will ensure you can update quickly without the possible side effects of a minor version update.

Patches for Drupal 7.x, 8.4.x, 8.5.x and 8.6.x will be provided in addition to the releases mentioned above. (If your site is on a Drupal 8 release older than 8.4.x, it no longer receives security coverage and will not receive a security update. The provided patches may work for your site, but upgrading is strongly recommended as older Drupal versions contain other disclosed security vulnerabilities.)

This release will not require a database update.

The CVE for this issue is CVE-2018-7602. The Drupal-specific identifier for the issue will be SA-CORE-2018-004.

The Security Team or any other party is not able to release any more information about this vulnerability until the announcement is made. The announcement will be made public at, over Twitter, and in email for those who have subscribed to our email list. To subscribe to the email list: login on, go to your user profile page, and subscribe to the security newsletter on the Edit » My newsletters tab.

Journalists interested in covering the story are encouraged to email to be sure they will get a copy of the journalist-focused release. The Security Team will release a journalist-focused summary email at the same time as the new code release and advisory.
If you find a security issue, please report it at

Categories: Drupal

New Bolt Action and Beyond the Gates Antares Releases Available From Warlord Games

Tabletop Gaming News - 23 April 2018 - 9:00am
Sort of a slow week for Warlord Games. Though, to be fair, with Salute and such, let alone the break-neck pace they were going at, they were bound to have a slower week at some point. This time around, they’ve got a new Japanese tank destroyer for Bolt Action and are now selling individual troopers […]
Categories: Game Theory & Design

Sponsored: How Shopify enables game developers to monetize with merch

Social/Online Games - Gamasutra - 23 April 2018 - 8:24am

If you're not selling merchandise from right inside your game, you may be leaving money on the table. Corey Pollock explains how Shopify can help game devs take advantage of the rapidly-growing merchandising segment. ...

Categories: Game Theory & Design

Fantasy Flight Previews Flesh Rippers for Runewars Minis Game

Tabletop Gaming News - 23 April 2018 - 8:00am
The Uthuk army is full of models that will gladly rip their enemy’s flesh from their bones. However, none do it with such efficiency and speed as the Flesh Rippers. They’re a new cavalry unit coming for the Runewars minis game, and you can get a preview of them here from Fantasy Flight. From the […]
Categories: Game Theory & Design

Commerce Admin Checkout

New Drupal Modules - 23 April 2018 - 7:50am

This module allows a site administrators to use Drupal Commerce checkout to create orders for customers. This is useful if you have customizations to your checkout workflow (custom panes, etc) that you don't want to recreate on the admin side of Commerce.

This module includes 2 checkout panes:

Categories: Drupal

PAX East 2018: Designing a Convention Booth - by Kurt Bieg Blogs - 23 April 2018 - 7:04am
This post is a cross-post from our own website blog. Link: In this post we go over what went into planning our booth for PAX East Including what to order, how to lay stuff out, how to sell merch, etc.
Categories: Game Theory & Design

How to stand out in the crowd - by Chris Cobb Blogs - 23 April 2018 - 7:03am
We will explore the traits that make a game stand out in in a saturated market
Categories: Game Theory & Design

A nice application of the golden ratio in programming - by Steven Stadnicki Blogs - 23 April 2018 - 7:03am
A pretty common programming application - hashing a sequence of possibly serial numbers into a random-looking sequence - has a straightforward solution with some interesting number theory, and a nice application of the golden ratio, behind it.
Categories: Game Theory & Design

Atari VCS: E.T. The Extra-Terrestrial - by John Harris Blogs - 23 April 2018 - 7:02am
This is an excerpt from '21 Unexpected Games to Love For The Atari VCS', available in the current game eBook Storybundle. E.T. gets a lot of crap, but it is possible to enjoy, and it's arguably better than Warshaw's previous hit Raiders Of The Lost Ark.
Categories: Game Theory & Design

HTML5 Games Next Frontier - Casual Games For Brands - by Ben Chong Blogs - 23 April 2018 - 7:02am
Learn how brands are achieving success using casual HTML5 games.
Categories: Game Theory & Design

Mobility! Thoughts after launching an accessible precision platformer - by Tom Hermans Blogs - 23 April 2018 - 7:01am
Two years ago, I had an idea for a platforming game. Would my design skills finally be good enough to make a game that would reach an audience? Little did I know that the game’s reception would go well over any expectations I had.
Categories: Game Theory & Design

More Idoneth Deepkin Available To Order From Games Workshop

Tabletop Gaming News - 23 April 2018 - 7:00am
The big piece of flashy artwork for the release of the Idoneth Deepkin included a guy on this big sea creature. But it wasn’t part of the initial wave of releases. Well, he’s available now (two versions, actually), along with a new squad. If you’re looking to bulk up your forces, now’s your chance. Whether […]
Categories: Game Theory & Design

Why Relationships?

Gnome Stew - 23 April 2018 - 6:54am
Two Intense Games, One More Intense Reaction Recently I had the joy of playing two phenomenal games over the course of a few short days — Catherine Ramen’s in development Red Carnations on a Black Grave, and Ten Candles by Stephen Dewey. Red Carnations I didn’t know existed until I was signing up for games […]
Categories: Game Theory & Design

Corvus Belli Previews May Infinity Releases

Tabletop Gaming News - 23 April 2018 - 6:00am
We’re about a week out from May. Seems to be a good time to bring out some new previews for what will be available that month. For Covus Belli, that means giving you a look at the next wave of Infinity releases. And, so, without further ado, here you go. From the post: Infinity May […]
Categories: Game Theory & Design

April Augmented - 2018

New RPG Product Reviews - 23 April 2018 - 2:09am
Publisher: Dreamscarred Press
Rating: 5
An review

It’s that time of the year again! Usually, I try to have the April’s Fool-product reviews done in time for April 1st, but this year, I got them all either on that day or after it, so yeah – please excuse the delay! This year’s April Augmented-installment by Dreamscarred Press clocks in at 12 pages, 1 page front cover, 1 page SRD, ½ a page editorial, leaving us with 9.5 pages of content, so let’s take a look!

So, first of all, we get a Bloodforge (Infusion)-style new race – the Doggo! And no. It’s not another anthropomorphized dog-race. It’s a dog-race. You know, like in M.I.B. and various other forms of media? You can play an intelligent, talking dog! And that awakened dog? Yeah, you can play him. Doggos are augmented magical beasts, Medium, have a speed of 40 ft. and get +2 Str and Cha, -2 Int. Their language (beyond that of the awakener) is btw. called “Bork”, which made me grin. They get +1 natural AC, +2 to Survival and Acrobatics, low-light vision, scent and a properly codified primary natural bite attack (with size category-based damage noted). Classes that grant weapon proficiencies allow the doggos to wield weapons in their jaw, but casting verbal spells while having an item in your mouth is hard, imposing a 20% spell failure chance. The doggos are quadrupedal, gaining the appropriate benefits. They obviously lack opposable thumbs, which constitutes the properly depicted detriment of the race. There are alternate racial traits included. Instead of the natural AC bonus, they can get Skill Focus in a skill chosen from a list They can also get a movement rate of 50 ft. at the cost of decreased bite damage output. They can also be “Smol” (XD Yes. Deliberate.), being Small and gaining +2 Dex and Cha, -2 Int. The Acrobatics bonus may be exchanged with a swim speed equal to ½ land speed. We also get a racial feat, Slobbercaster, which lets you hold a spell focus in the mouth when casting verbal spells, sans incurring the spell failure chance. (I assume this also extends to material components.) The race sports no age, height and weight table, but come one! You can look these up online and tailor to your favorite dog breed.

Now, a serious section of the pdf is taken up by a new akashic veil and the ramifications of it – I am, obviously, talking about chef’s armory. Slot-wise,w e’re talking about Hands here and all veilweavers classify for it. The veil manifests a set of chef’s knives that are treated as masterwork daggers and that may be conjured and dismissed as a free action. The veil also allows for at-will ectoplasmic creation as a psi-like ability to generate non-edible kitchen utensils; additionally, create water and spark are gained as at-will SPs. The veil also lets you precisely measure weight and dimensions of stuff you pick up. Additional essence invested increases the damage output of the created weapons and the insight bonus. Wait, what? Yep, the veil also nets a +2 insight bonus to checks made to prepare or brew food/drinks and, if enhanced with weapon properties etc., the bonus increases.

“But…veils…weapons…did I miss a memo?” Nope, you did not. The pdf properly codifies the [weapon] descriptor for veils, which adds a GINORMOUS potential for further expansion of the much-beloved Akasha-system, one that I really hope to see expanded further! The chakra bind for hands of the veil, though, ticks off one of the things I consider problematic: It increases the critical multiplier of daggers made via the veil to x4, or by +1, whichever is higher. Yes, this allows you to bypass the usual x4 multiplier cap. Why am I not screaming bloody murder? Simple. We’re talking about daggers here. Not exactly the most PG option out there and doing the math should allow anyone to see why this, for once, in spite of the kneejerk reaction it may elicit, is totally cool with me.

Beyond the veil, we also obviously need to take a close look at AKASHIC COOKING. A creature benefiting from an akashic recipe can do so only 3 times per day, after consuming the whole meal, with only 1 benefit per 4-hour period – no stuffing yourself here! Unless otherwise noted, meals take an hour to prepare and require that the ingredients be present. Speaking of which: Ingredients are classified in 7 distinct groups, with “F” grade ingredients representing spoiled ones; “E”-rank ingredients can usually be foraged and anything better than that becomes REALLY rare. “A”-rank potatoes are e.g. grown in a specific demiplane, infused with mana, while the mythic and highest “S”-rank includes stuff like, to steal another example from the book, “milk from the primeval cow Auðumbla.” Yes, we actually get examples noted for each rank, and no A- and S-rank ingredients are usually not sold. But otherwise, we get concise guidance regarding prices. Recipes for akashic dishes can be purchased for 150 gp per recipe, and they can be developed at half price, though that takes a bit of time. In order to facilitate the creation of your own recipes, we get base DCs and corresponding effect levels as quick guidelines, and we even get suggested price-points for mundane ingredients – cool!

9 sample recipes are provided, listing DCs, ingredients and optional components, as well as effects. Eating Jumbo Gumbo can net a 1-minute expansion, as well as temporary power points. The Vegetarian consists of meat, meat and even more meat and nets temporary hit points. Water of Life is basically a tropical cocktail that heals you. Yes, paper umbrella optional, but oh so stylish! I’m going to be an insufferable chili-head prick regarding Ghost Pepper Poppers: Jalapenos are NOT the correct peppers – they aren’t even hot. The Naga (or Bhut) Jolokia would be the super-hot ones this should use. Anyways, the benefits are hilarious. Feed it to a dead person and they’ll come back temporarily to life, begging for water, allowing for an unreliable, but ridiculously fun chance to question the target before it dies again. And yes, fire breath can be found. Chicken noodle soup helps vs. diseases (minor nitpick: Fortitude should be capitalized.)

The akashic cooking experience can be enhanced further by two new feats: Apprentice Chef, which nets the option to shape the chef’s armory veil even for non-akashic characters, and Master Chef, which not only nets you recipes, but also allows you to bind it. Both yield a point of essence. Brave chefs can drink the vial of rotten food, which can affect them with poison and disease, but which can also fortify the chef’s armory veil. The blessed stone of hearth and flame improves the accuracy of the spark of chef’s armory for cooking and speeds up the cooking process. Traveling chef is a bag of spices that the veil can absorb, thereafter holding ingredients in the veil…and the veilweaver gets some degree of control over the flow of time for these ingredients, allowing for the quick aging of e.g. wines! And yes, synergy with Flaming Crab Games’ culinary magic is not hard to achieve here!

The pdf also includes a new feat, namely Catch These Hands, which requires Improved Unarmed Strike or Catch Off-Guard. These allow you to throw your punches. Literally. As in, they get the throwing property. Come on, that is weird, a bit icky, and hilarious!

Speaking of which: The pdf sports new spells, 4 of which are cantrips: Secluded recliner lets you conjure forth…just that. “Great for sitting on while sharing popcorn with your allies while watching the stalker bungle up their plan.“ Inform nets a +1 competence bonus to a single Intelligence based skill check, for 1 minute. Does not stack with itself. “This is typically enough to inform your party’s stalker on why exactly their latest plan is a stupid idea.” There is also create popcorn, which notes “Comes with salt and/or butter, although if the caster is of an evil alignment, it can also come with caramel.” Oh, and “Good for eating with the medic while watching your stalker enact their stupid plan.” XD Come on, that’s a hilarious visual! Oh, and there would be finger gun. Pew-pew-pew – you can fire one shot of a 1d3 non-lethal force damage with your finger, one missile per finger. Standard action to fire. There is a bigger, more damaging 2nd level version of the spell here as well. We also get the “Watch this Idiot” heraldry, which nets you inform at-will. Your unseen servants can use create popcorn and secluded recliner at-will. Amazing!

Oh, and I failed to mention the thing that made me fall almost off my chair, laughing my behind off. Know how much I adore the GLORIOUS Empath-archetype that DSP released? You know, perhaps my favorite archetype in all of Pathfinder? We get a new supreme Zeitgeist. “Ratbagger, the End.” XD Yep, that would be a little satire on yours truly. In case you didn’t know: I often talk about “kitten-tests”, abilities that “can or can’t be kitten’d” in the context of abilities that grant bonuses for defeated foes– this goes back to the “bag of rats test.” Can you accumulate insane bonuses by slaughtering a bag of rats? If so, it fails the bag of rats-test. This is one of single biggest pet-peeves in design and really rubs me the wrong way, as it can be mitigated and avoided in a variety of ways. Hence, at one point, I started using “bags of kittens” in my examples – after all, no one likes the idea of slaughtering those, right? Anyways, associated events for the zeitgeist would be endings of all kinds. All numbers you include in jokes must be in Base 13 and you may not explain why. Oh, and the goal is that, whenever something is finished, you must evaluate it and describe it to anyone who asks. I was laughing so hard while reading this!

Séance bonus applies to Knowledge (history) and Appraise and the psionic powers would be aura of decay at 4th, second chance at 5th and ex nihilo at 6th level, which is pretty damn funny, at least to me. The spirit bonus applies to things pertaining ends: Proficiency with butchering axes and scythes, and sickles are treated as having an x4 crit multiplier. You get guide the willing at-will. Oh, and you get “Quoth the Raven” – no, not that Ravenloft fanzine. “Quoth the Raven: You lose the ability to speak words, though you can still vocalize sounds—mostly high-pitched, squeaky ones, though. In addition, you gain a raven familiar, as a wizard of your level, and it furthermore has the ability to speak for you. It will not say the word “nevermore,” however, and trying to force it to will agitate it immensely. Finally, this raven cannot die—if it would do so, it disappears instead, only to return in perfect health the next time you contract with Ratbagger, the End” I almost fell off my chair laughing.


Cool: The ability: “A lifetime, no more, no less” lets you touch a creature. Once it perishes, it is treated as having died of old age, with the effect being only countered by wish/miracle and the like. You also are immune to disabled, dying and unconscious and are not staggered when using Diehard. Whenever a creature within 30 ft. dies, you gain an “ending”, which lasts for an hour or until expended. This includes yourself. Upon dying, you may expend an ending every round to continue acting, in no way inconvenienced. If the body is destroyed, you get the uncarnate feature, though sans option to become material unless you already have it. Once the endings run out, unless healed, you die. Drowning’s peculiarities are included.



And yes, I get it. The ultimate ability of the endzeitgeist zeitgeist is the ultimate bag of rats/kitten-exploit. Picture me laughing loud, slow clapping and grinning from ear to ear.

The joke here even goes so far as to use a font that almost looks like I’m allcaps-“screaming” about something. Every aspect of this is hilarious in some way, at least for me. And better yet, the zeitgeist is a damn cool addition to the roster of the superb Empath – just make sure to include a caveat for minimum Intelligence or HD to prevent rat-bagging/kitten-bagging exploits for…Ratbagger.

The absurdity is glorious! XD

I…can’t… stop…laughing. Well-played, DSP-crew!


Editing and formatting are almost perfect on a formal level, and super-tight, top-notch, on a rules-language level. Layout adheres to Dreamscarred Press’ nice two-column full-color standard and the pdf comes with a nice, comic-style artwork for the doggo. The pdf comes fully bookmarked for your convenience.

Alex Stallings, Jacob Karpel, Jade Ripley, Anthony Cappell and Kevin Ryan, with dev-work by Forrest Heck provide an extremely usable and funny pdf. Each and every aspect of this pdf is not only patently funny and gonzo, they also are actually useful at the table! In fact, this pdf is PWYW and tighter in its rules than 99% of rules-books I review. This is a little masterpiece and whether you agree with my assessments or not, love me or hate me or anything in-between, please check out this gem. I am absolutely positive that you’ll find something thoroughly amazing within. You can laugh with or about me, play a damn cool race and add some akashic panache to your cooking – all for any price you’d like! Pure amazing, my final verdict will clock in 5 stars + seal of approval. I seriously have never laughed this much while reading a RPG-file. EVER. This gets my best-of-tag.

Endzeitgeist out.
Categories: Game Theory & Design

Name redactor

New Drupal Modules - 23 April 2018 - 12:53am

This module implements a PET (Privacy Enhanching Technology) that lets the user to hide personal data from search engines.

It is part of The PET project. For more information, visit The PET project website.

Categories: Drupal

Fuzzy Thinking: Signs You Are Dealing with an Old Schooler #5

RPGNet - 23 April 2018 - 12:00am
Fuzzy gumballs.
Categories: Game Theory & Design


New Drupal Modules - 22 April 2018 - 6:30pm


Categories: Drupal

Video Game Deep Cuts: Rise Of The Ambient Parent Jam

Social/Online Games - Gamasutra - 22 April 2018 - 6:03pm

This week's highlights include a piece on Zelda & ambient video games, the role of parents in games like God Of War, and a NBA Jam making-of video. ...

Categories: Game Theory & Design

Video Game Deep Cuts: Rise Of The Ambient Parent Jam - by Simon Carless Blogs - 22 April 2018 - 5:50am
This week's highlights include a piece on Zelda & ambient video games, the role of parents in games like God Of War, and a NBA Jam making-of video.
Categories: Game Theory & Design


Subscribe to As If Productions aggregator