Used by some of the biggest brands on the planet, not to mention a plethora of small and medium sized businesses, Magento is one of the top ecommerce platforms on the market. The open-source system empowers digital retailers with flexible cloud solutions designed to drive growth and support innovation. To keep Magento ecommerce sites performing ...
Supporting our merchants’ need for secure, high performing sites, we are pleased to announce that the latest versions of Magento Open Source 2.3.3, 2.2.10 and our new security-only patch (2.3.2-p2) are now available. The latest release of Magento Open Source software includes several security enhancements along with substantial performance ...
Whether you’re a wholesaler, industrial or commercial business, it is always challenging to evaluate software solutions that align to your unique business processes and needs. What are the most important criteria to consider? Former Forrester Analyst Andy Hoar has developed a new methodology to evaluate B2B commerce vendors. Based on a ...
Magento Commerce and Open Source 2.3.2, 2.2.9 and 2.1.18 contain 75 security enhancements that help close Remote Code Execution (RCE), Cross-Site Scripting (XSS) and other vulnerabilities. These enhancements are described in three related blog posts — the post you’re currently reading plus these two separate posts, which you can find ...
An issue has been discovered in Magento Open Source and Magento Commerce that can be used to disclose the URL location of a Magento Admin panel. While there is currently no reason to believe this issue would lead to compromise directly, knowing the URL location could make it easier to automate attacks. We are aware of similar attacks using these ...
SUPEE-11086, Magento Commerce 1.14.4.1 and Open Source 1.9.4.1 contain multiple security enhancements that help close remote code execution (RCE), cross-site scripting (XSS), cross-site request forgery (CSRF) and other vulnerabilities. Information on all the changes in 1.14.4.1 and 1.9.4.1 releases is available in the Magento ...