PrestaShop 1.7.6.6
3 July 2020
PrestaShop version 1.7.6.6 is now available (security release).
Upgrading to PrestaShop 1.7.6.6
PrestaShop 1.7.6.6 can be upgraded to (or installed) using any of Installatron's products. Use Installatron's optional Automatic Update feature to automatically apply PrestaShop updates as new versions are released, or use Installatron's Clone feature to duplicate an existing PrestaShop install to test the 1.7.6.6 upgrade prior to applying it live. Get started managing your PrestaShop installations with Installatron
What's New in PrestaShop 1.7.6.6
Security
- Improper access control on product page with combinations, attachments and specific prices
- Improper access control on product attributes page
- Improper access control on customers search
- Reflected XSS related in import page
- Reflected XSS with back parameter
- Reflected XSS on Exception page
- Reflected XSS on AdminCarts page
- Reflected XSS on Search page
- Reflected XSS with dashboard calendar
- Open redirection when using back parameter
- Reflected XSS on AdminFeatures page
- Reflected XSS on AdminAttributesGroups page
- Reflected XSS in security compromised page
Back Office - Bug Fixes
- Fix sidebar not displayed in BO Add employee page
- Fix wrong number of "Last emails" in BO - Customer View page
- Wrong redirection when using the quick search for a category
- Fix error when trying to translate Serbian using the BO interface
Front Office - Bug Fixes
- Convert cart rule value when order currency is different
- Change product redirection rules to redirect to valid attribute url
- Duplicate address when submitting a form with errors
Core - Improvements
- Update version to 1.7.6.5 (by @PierreRambaud)