• Thursday, October 10, 2019

Supporting our merchants’ need for secure, high performing sites, we are pleased to announce that the latest versions of Magento Open Source 2.3.3, 2.2.10 and our new security-only patch (2.3.2-p2) are now available. The latest release of Magento Open Source software includes several security enhancements along with substantial performance improvements. 


Magento Open Source 2.3.3 incorporates important changes to our native payment integrations to comply with new European directives (learn more about PSD2 Compliance Support) and introduces PHP 7.3 support. (Please note that security support for PHP 7.1 is reaching its end of life. You should plan to take action in order to remain PCI compliant if you still rely on PHP 7.1. You can learn more here). We strongly recommend you upgrade to ensure your online store stays compliant and maintains the highest level of security and performance. 

Some of the highlights included in Magento Open Source 2.3.3 are:

Security: We continue to strengthen our platform and to reduce our backlog by focusing on reported issues. For that reason, we have included almost 100 security fixes in this patch.

Performance: Faster loading times and better overall shopping experience by displaying text while webfonts load in the background and moving non-critical CSS items to the end of the loading queue.  Additionally, we are reducing the number of requests going back to the server, which helps increase throughput and decrease resource consumption. With these and other performance enhancements we were able to improve our Google PageSpeed Insights score by up to 5 points in some instances.

Quality: Over 190 product quality enhancements across many critical areas of the platform like our Sales, Catalog and Checkout modules. 



We welcome Yotpo as a new addition to our core code as a vendor bundled extension. Yotpo is an eCommerce marketing platform that helps brands drive growth with integrated solutions for customer reviews, visual marketing, loyalty, and referrals. With this pre-installed integration, merchants can reduce development costs and implementation time by seamlessly activating Yotpo's UGC solutions, instantly start collecting and displaying high-converting customer content, and stay on top of key performance metrics from within the Magento Commerce Admin panel. 

Admin User Experience Research 

Magento Open Source is introducing the tracking of user actions and events on the Admin panel as part of our efforts to better understand the Admin user experience and improve product design. Post installation, the first user signing in will be presented with the option to accept or decline to participate. Read more about it in our User Guide. 

Graph QL 

Improved Graph QL API coverage for PayPal payment integration, Gift Cards and Store Credit functionality. Learn more about Graph QL in our Release Notes. 

Google Shopping ads Channel 

Our Google Shopping ads Channel extension is now part of our core code. This integration will allow merchants to quickly sign up and begin leveraging this tool’s benefits without requiring them to download an extension from the Marketplace. Learn how Google Shopping ads Channel delivers the power of Google advertising network in one end-to-end solution. 

Bundled Extensions 

Multiple security and performance improvements to: Dotdigital, Amazon Pay, Klarna, Vertex and Magento Shipping 

You can review the release notes for more information about all of the enhancements and go to the Security Center for more information about security updates included in these new versions. 


Several other product enhancements have been delivered throughout Q3. Below is a summary of some key releases. 

Cloud Platform 

This quarter we also released multiple updates to our deployment tooling. Some significant improvements include resolving a primary cause of stuck deployments, speeding up static content deployment by up to 4 times, automated tests to measure server response time after deployment, and introducing new tooling that reports on compatibility issues. For more information see the  ece-tools release notes. 

Business Intelligence 

Also, on mid-September the Magento Business Intelligence Summer 2019 release went live providing merchants with enhanced ways to share insights and visualize data. Read about it here. 

PWA Studio 4.0.0 

New peregrine hooks and build tools improve the developer experience, making it easier and more efficient to create, customize and deploy PWA storefronts. Learn more about it here. 

Security-only patch 

The new security-only patch is a lighter, easier-to-deploy code. It provides fixes for recently identified vulnerabilities against the previous quarterly patch. To learn more about this patch and how to download and install it, please visit our blog post here. 

Source - Magento HQ