solidus_frontend
Legacy storefront for the Solidus e-commerce platform. New Solidus installations use Solidus Storefront: https://github.com/solidusio/solidus/tree/main/storefront#readme
Activity
- Latest release
- 5d ago
- Total releases
- 160
- Cadence
- ~8 days
- Last 12 months
- 4
Reach
- Downloads
- 3.1M
- Stars
- 3
Details
- License
- BSD-3-Clause
- First release
- Jun 29, 2015
| Version | Released | |
|---|---|---|
4.6.3
patch
|
4.6.3
patch
Dependencies (15)
+ 7 more
Changelog
Compare changes
|
|
4.7.1
patch
|
4.7.1
patch
Dependencies (15)
+ 7 more
Changelog
Compare changes
|
|
4.7.0
minor
|
4.7.0
minor
Dependencies (15)
+ 7 more
Changelog
Compare changes
|
|
4.6.0
minor
|
4.6.0
minor
Dependencies (15)
+ 7 more
Changelog
Compare changes
|
|
4.0.0
major
|
4.0.0
major
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
3.4.0
minor
|
3.4.0
minor
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
4.0.0.dev
pre
|
4.0.0.dev
pre
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
3.1.9
patch
|
3.1.9
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
3.4.0.dev
pre
|
3.4.0.dev
pre
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
3.3.0
minor
|
3.3.0
minor
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
3.2.5
patch
|
3.2.5
patch
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
3.2.4
patch
|
3.2.4
patch
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
3.2.3
patch
|
3.2.3
patch
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
3.0.8
patch
|
3.0.8
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
3.1.8
patch
|
3.1.8
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
3.2.1
patch
|
3.2.1
patch
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
3.2.2
patch
|
3.2.2
patch
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
3.2.0
minor
|
3.2.0
minor
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
3.3.0.alpha
pre
|
3.3.0.alpha
pre
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
3.2.0.alpha
pre
|
3.2.0.alpha
pre
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
3.0.7
patch
|
3.0.7
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
2.11.17
patch
|
2.11.17
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
3.1.7
patch
|
3.1.7
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
3.1.6
patch
|
3.1.6
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
2.11.16
patch
|
2.11.16
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
3.0.6
patch
|
3.0.6
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
2.11.15
patch
|
2.11.15
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
2.11.14
patch
|
2.11.14
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
3.1.5
patch
|
3.1.5
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
3.0.5
patch
|
3.0.5
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
2.11.13
patch
1 CVE
CVE-2021-43846
GHSA-h3fg-h5v3-vf8m
Jan 06, 2022
CSRF forgery protection bypass in solidus_frontend
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
ImpactCSRF vulnerability that allows a malicious site to add an item to the user's cart without their knowledge. All To reproduce the issue:
PatchesPlease, upgrade After upgrading, make sure you read the "Upgrade notes" section below. Upgrade notesThe patch adds CSRF token verification to the "Add to cart" action. Adding forgery protection to a form that missed it can have some side effects.
|
2.11.13
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
3.1.4
patch
1 CVE
CVE-2021-43846
GHSA-h3fg-h5v3-vf8m
Jan 06, 2022
CSRF forgery protection bypass in solidus_frontend
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
ImpactCSRF vulnerability that allows a malicious site to add an item to the user's cart without their knowledge. All To reproduce the issue:
PatchesPlease, upgrade After upgrading, make sure you read the "Upgrade notes" section below. Upgrade notesThe patch adds CSRF token verification to the "Add to cart" action. Adding forgery protection to a form that missed it can have some side effects.
|
3.1.4
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
3.0.4
patch
1 CVE
CVE-2021-43846
GHSA-h3fg-h5v3-vf8m
Jan 06, 2022
CSRF forgery protection bypass in solidus_frontend
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
ImpactCSRF vulnerability that allows a malicious site to add an item to the user's cart without their knowledge. All To reproduce the issue:
PatchesPlease, upgrade After upgrading, make sure you read the "Upgrade notes" section below. Upgrade notesThe patch adds CSRF token verification to the "Add to cart" action. Adding forgery protection to a form that missed it can have some side effects.
|
3.0.4
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
3.0.3
patch
1 CVE
CVE-2021-43846
GHSA-h3fg-h5v3-vf8m
Jan 06, 2022
CSRF forgery protection bypass in solidus_frontend
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
ImpactCSRF vulnerability that allows a malicious site to add an item to the user's cart without their knowledge. All To reproduce the issue:
PatchesPlease, upgrade After upgrading, make sure you read the "Upgrade notes" section below. Upgrade notesThe patch adds CSRF token verification to the "Add to cart" action. Adding forgery protection to a form that missed it can have some side effects.
|
3.0.3
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
2.11.12
patch
1 CVE
CVE-2021-43846
GHSA-h3fg-h5v3-vf8m
Jan 06, 2022
CSRF forgery protection bypass in solidus_frontend
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
ImpactCSRF vulnerability that allows a malicious site to add an item to the user's cart without their knowledge. All To reproduce the issue:
PatchesPlease, upgrade After upgrading, make sure you read the "Upgrade notes" section below. Upgrade notesThe patch adds CSRF token verification to the "Add to cart" action. Adding forgery protection to a form that missed it can have some side effects.
|
2.11.12
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
3.1.3
patch
1 CVE
CVE-2021-43846
GHSA-h3fg-h5v3-vf8m
Jan 06, 2022
CSRF forgery protection bypass in solidus_frontend
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
ImpactCSRF vulnerability that allows a malicious site to add an item to the user's cart without their knowledge. All To reproduce the issue:
PatchesPlease, upgrade After upgrading, make sure you read the "Upgrade notes" section below. Upgrade notesThe patch adds CSRF token verification to the "Add to cart" action. Adding forgery protection to a form that missed it can have some side effects.
|
3.1.3
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
3.1.2
patch
1 CVE
CVE-2021-43846
GHSA-h3fg-h5v3-vf8m
Jan 06, 2022
CSRF forgery protection bypass in solidus_frontend
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
ImpactCSRF vulnerability that allows a malicious site to add an item to the user's cart without their knowledge. All To reproduce the issue:
PatchesPlease, upgrade After upgrading, make sure you read the "Upgrade notes" section below. Upgrade notesThe patch adds CSRF token verification to the "Add to cart" action. Adding forgery protection to a form that missed it can have some side effects.
|
3.1.2
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
3.1.1
patch
1 CVE
CVE-2021-43846
GHSA-h3fg-h5v3-vf8m
Jan 06, 2022
CSRF forgery protection bypass in solidus_frontend
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
ImpactCSRF vulnerability that allows a malicious site to add an item to the user's cart without their knowledge. All To reproduce the issue:
PatchesPlease, upgrade After upgrading, make sure you read the "Upgrade notes" section below. Upgrade notesThe patch adds CSRF token verification to the "Add to cart" action. Adding forgery protection to a form that missed it can have some side effects.
|
3.1.1
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
3.0.2
patch
1 CVE
CVE-2021-43846
GHSA-h3fg-h5v3-vf8m
Jan 06, 2022
CSRF forgery protection bypass in solidus_frontend
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
ImpactCSRF vulnerability that allows a malicious site to add an item to the user's cart without their knowledge. All To reproduce the issue:
PatchesPlease, upgrade After upgrading, make sure you read the "Upgrade notes" section below. Upgrade notesThe patch adds CSRF token verification to the "Add to cart" action. Adding forgery protection to a form that missed it can have some side effects.
|
3.0.2
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
3.1.0
minor
1 CVE
CVE-2021-43846
GHSA-h3fg-h5v3-vf8m
Jan 06, 2022
CSRF forgery protection bypass in solidus_frontend
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
ImpactCSRF vulnerability that allows a malicious site to add an item to the user's cart without their knowledge. All To reproduce the issue:
PatchesPlease, upgrade After upgrading, make sure you read the "Upgrade notes" section below. Upgrade notesThe patch adds CSRF token verification to the "Add to cart" action. Adding forgery protection to a form that missed it can have some side effects.
|
3.1.0
minor
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
2.11.11
patch
1 CVE
CVE-2021-43846
GHSA-h3fg-h5v3-vf8m
Jan 06, 2022
CSRF forgery protection bypass in solidus_frontend
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
ImpactCSRF vulnerability that allows a malicious site to add an item to the user's cart without their knowledge. All To reproduce the issue:
PatchesPlease, upgrade After upgrading, make sure you read the "Upgrade notes" section below. Upgrade notesThe patch adds CSRF token verification to the "Add to cart" action. Adding forgery protection to a form that missed it can have some side effects.
|
2.11.11
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
3.0.1
patch
1 CVE
CVE-2021-43846
GHSA-h3fg-h5v3-vf8m
Jan 06, 2022
CSRF forgery protection bypass in solidus_frontend
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
ImpactCSRF vulnerability that allows a malicious site to add an item to the user's cart without their knowledge. All To reproduce the issue:
PatchesPlease, upgrade After upgrading, make sure you read the "Upgrade notes" section below. Upgrade notesThe patch adds CSRF token verification to the "Add to cart" action. Adding forgery protection to a form that missed it can have some side effects.
|
3.0.1
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
2.10.5
patch
1 CVE
CVE-2021-43846
GHSA-h3fg-h5v3-vf8m
Jan 06, 2022
CSRF forgery protection bypass in solidus_frontend
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
ImpactCSRF vulnerability that allows a malicious site to add an item to the user's cart without their knowledge. All To reproduce the issue:
PatchesPlease, upgrade After upgrading, make sure you read the "Upgrade notes" section below. Upgrade notesThe patch adds CSRF token verification to the "Add to cart" action. Adding forgery protection to a form that missed it can have some side effects.
|
2.10.5
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
2.11.10
patch
1 CVE
CVE-2021-43846
GHSA-h3fg-h5v3-vf8m
Jan 06, 2022
CSRF forgery protection bypass in solidus_frontend
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
ImpactCSRF vulnerability that allows a malicious site to add an item to the user's cart without their knowledge. All To reproduce the issue:
PatchesPlease, upgrade After upgrading, make sure you read the "Upgrade notes" section below. Upgrade notesThe patch adds CSRF token verification to the "Add to cart" action. Adding forgery protection to a form that missed it can have some side effects.
|
2.11.10
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
2.11.9
patch
1 CVE
CVE-2021-43846
GHSA-h3fg-h5v3-vf8m
Jan 06, 2022
CSRF forgery protection bypass in solidus_frontend
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
ImpactCSRF vulnerability that allows a malicious site to add an item to the user's cart without their knowledge. All To reproduce the issue:
PatchesPlease, upgrade After upgrading, make sure you read the "Upgrade notes" section below. Upgrade notesThe patch adds CSRF token verification to the "Add to cart" action. Adding forgery protection to a form that missed it can have some side effects.
|
2.11.9
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
3.0.0
major
1 CVE
CVE-2021-43846
GHSA-h3fg-h5v3-vf8m
Jan 06, 2022
CSRF forgery protection bypass in solidus_frontend
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
ImpactCSRF vulnerability that allows a malicious site to add an item to the user's cart without their knowledge. All To reproduce the issue:
PatchesPlease, upgrade After upgrading, make sure you read the "Upgrade notes" section below. Upgrade notesThe patch adds CSRF token verification to the "Add to cart" action. Adding forgery protection to a form that missed it can have some side effects.
|
3.0.0
major
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
2.11.8
patch
1 CVE
CVE-2021-43846
GHSA-h3fg-h5v3-vf8m
Jan 06, 2022
CSRF forgery protection bypass in solidus_frontend
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
ImpactCSRF vulnerability that allows a malicious site to add an item to the user's cart without their knowledge. All To reproduce the issue:
PatchesPlease, upgrade After upgrading, make sure you read the "Upgrade notes" section below. Upgrade notesThe patch adds CSRF token verification to the "Add to cart" action. Adding forgery protection to a form that missed it can have some side effects.
|
2.11.8
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
2.11.6
patch
1 CVE
CVE-2021-43846
GHSA-h3fg-h5v3-vf8m
Jan 06, 2022
CSRF forgery protection bypass in solidus_frontend
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
ImpactCSRF vulnerability that allows a malicious site to add an item to the user's cart without their knowledge. All To reproduce the issue:
PatchesPlease, upgrade After upgrading, make sure you read the "Upgrade notes" section below. Upgrade notesThe patch adds CSRF token verification to the "Add to cart" action. Adding forgery protection to a form that missed it can have some side effects.
|
2.11.6
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
2.11.7
patch
1 CVE
CVE-2021-43846
GHSA-h3fg-h5v3-vf8m
Jan 06, 2022
CSRF forgery protection bypass in solidus_frontend
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
ImpactCSRF vulnerability that allows a malicious site to add an item to the user's cart without their knowledge. All To reproduce the issue:
PatchesPlease, upgrade After upgrading, make sure you read the "Upgrade notes" section below. Upgrade notesThe patch adds CSRF token verification to the "Add to cart" action. Adding forgery protection to a form that missed it can have some side effects.
|
2.11.7
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
3.0.0.rc2
pre
|
3.0.0.rc2
pre
Dependencies (10)
+ 2 more
Changelog
Compare changes
|