magento2-40881: Admin redirect loop instead of an error when menu.xml is invalid
Community fix magento2-40881 merged into magento/magento2 on 2026-08-14, not in a release yet; applies cleanly to 34 releases from 2.4.6 to 2.4.9.
Fixes admin redirect loop instead of an error when menu.xml is invalid edited
- Pull request title
- Magento2 redirects to homepage instead of showing error with wrong menu declaration
- Pull request
- magento/magento2#40881
- Issues
- #36632 human
- Author
- @aasim110
- Merged
- 2026-08-14
- Fixed in
- no release yet
- Reported on
- —
- Categories
- Admin
- Components
- magento/module-backend
Labels
- Area
- Admin UI, UI Framework
- Component
- —
- Priority
- P2
- Severity
- —
- Reported on (labels)
- 2.4.x
Issue
Title and steps come from the upstream issue and pull request.
The upstream issue and pull request have no structured description.
Code match per tag
Each tag was checked with git apply --check against that tag's files. A clean match means the change applies; it is not a test result. Tags that already contain the fix are marked.
| Line | Code match per tag | Tests |
|---|---|---|
| 2.4.6 | 2.4.6 clean 2.4.6-p1 clean 2.4.6-p2 clean 2.4.6-p3 clean 2.4.6-p4 clean 2.4.6-p5 clean 2.4.6-p6 clean 2.4.6-p7 clean 2.4.6-p8 clean 2.4.6-p9 clean 2.4.6-p10 clean 2.4.6-p11 clean 2.4.6-p12 clean 2.4.6-p13 clean 2.4.6-p14 clean 2.4.6-p15 clean | 2.4.6: no test data 2.4.6-p1: no test data 2.4.6-p2: no test data 2.4.6-p3: no test data 2.4.6-p4: no test data 2.4.6-p5: no test data 2.4.6-p6: no test data 2.4.6-p7: no test data 2.4.6-p8: no test data 2.4.6-p9: no test data 2.4.6-p10: no test data 2.4.6-p11: no test data 2.4.6-p12: no test data 2.4.6-p13: no test data 2.4.6-p14: no test data 2.4.6-p15: no test data |
| 2.4.7 | 2.4.7 clean 2.4.7-p1 clean 2.4.7-p2 clean 2.4.7-p3 clean 2.4.7-p4 clean 2.4.7-p5 clean 2.4.7-p6 clean 2.4.7-p7 clean 2.4.7-p8 clean 2.4.7-p9 clean 2.4.7-p10 clean | 2.4.7: no test data 2.4.7-p1: no test data 2.4.7-p2: no test data 2.4.7-p3: no test data 2.4.7-p4: no test data 2.4.7-p5: no test data 2.4.7-p6: no test data 2.4.7-p7: no test data 2.4.7-p8: no test data 2.4.7-p9: no test data 2.4.7-p10: test files do not apply to this releaseunit: could not run before, could not run after |
| 2.4.8 | 2.4.8 clean 2.4.8-p1 clean 2.4.8-p2 clean 2.4.8-p3 clean 2.4.8-p4 clean 2.4.8-p5 clean | 2.4.8: no test data 2.4.8-p1: no test data 2.4.8-p2: no test data 2.4.8-p3: no test data 2.4.8-p4: no test data 2.4.8-p5: test files do not apply to this releaseunit: could not run before, could not run after |
| 2.4.9 | 2.4.9 clean | 2.4.9: test could not run before the patch, passes afterunit: could not run before, passes after |
Triage
Model @cf/cloudflare/clef. Probability this is a bug fix: 97.0%. Probability it is security relevant: 2.2%.
Show the model's answers and probabilities
| Question | Answer | Probabilities | Confidence |
|---|---|---|---|
| Change kind | bugfix | bugfix 96.6%, refactor 1.3%, feature 0.8%, tests_only 0.6%, dependency 0.3%, docs_only 0.3% | 92.1% |
| Area | admin | admin 84.6%, framework 10.1%, other 1.8% | 68.8% |
| Reported version | unspecified | unspecified 15.6%, 2.4.6-p1 2.5%, 2.4.3-p1 2.5% | 2.3% |
| Scope | 0.67 of 2 | 0 46.8%, 1 39.1%, 2 14.1% | 8.8% |
| Risk | 0.40 of 2 | 0 66.4%, 1 27.1%, 2 6.5% | 27.8% |
| Worth backporting | 1.41 of 2 | 2 56.9%, 1 26.9%, 0 16.3% | 13.3% |
Download
For cweagans/composer-patches, choose a version below and download the bundle. Copy its magento2-40881/ folder into patches/composer/, merge composer.patches.json into composer.json, then run composer install. Test files are always removed; paths are relative to each package root, using the default -p1 level.
Bundle README (what the ZIP ships)
# magento2-40881 Community fix merged upstream into magento/magento2, adapted by magento.watch. This is not a patch published by Adobe. Pull request: https://github.com/magento/magento2/pull/40881 Issue: https://github.com/magento/magento2/issues/36632 Author: @aasim110 Source commit: 3476fdd8c4d56b1ad2ca1580b6e8c946567108b4 Modifications: test files and documentation removed, paths rewritten relative to each Composer package. Licence: OSL-3.0 / AFL-3.0, as the original Magento Open Source code. Maintainer: Łukasz Bajsarowicz (@lbajsarowicz)
Licence: Magento Open Source code under OSL-3.0 and AFL-3.0. The bundle carries the original author, source commit and the list of modifications.
