Articles about Maintenance

  • Bug Bounty Program, the retrospective

    When hunters make your business safer!

    For several months, we experimented a Bug Bounty Program with the YesWeHack platform. Here is a retrospective, explaining why we did it, and what happened during this period.

    Continue reading Arrow
  • Announcing our first Bug Bounty program

    It's time to make PrestaShop better and safer that it already is!

    Protecting the business, data and privacy of PrestaShop’s users is one of our top priorities. We build our software with this goal in mind. That’s why we decided to put our security to the test. To encourage the security community to help us, today we are announcing our first bug bounty program!

    Continue reading Arrow
  • Security issue with PHPUnit, post-incident analysis

    The mysterious development dependencies!

    Early January, we encountered a security issue with PHPUnit in some modules that allowed attackers to perform arbitrary code execution without authorization through the PHPUnit dependency. This vulnerability was discovered through a merchant whose shops were compromised.

    Continue reading Arrow
  • Release Of PrestaShop 1.7.6.2

    Maintenance version of the 1.7.6.x branch

    After a few months dedicated to fixing all regressions found on the previous 1.7.6 versions, PrestaShop 1.7.6.2 is finally available!

    Continue reading Arrow
  • 1.6.1.x: what’s next

    The end of 1.6 official support by the PrestaShop company. And the beginning of something new.

    This last year, the PS company has been facing a dilemma: how to dedicate 100% of the developers’ time to move forward faster on the 1.7 version of the open source project, something everybody agrees on. And, at the same time, provide more time for merchants still using the 1.6 version to get ready to upgrade, by keeping them safe in case of critical issue after the official support ends on the 30th of June 2019. We have come up with a solution, thanks to the initiative and support of a few volunteers from the PrestaShop developer community: allowing them to take over the responsibility of maintaining PrestaShop 1.6.1.x beyond the end of official support.

    Continue reading Arrow