Joomla! Help Support Warrington Cheshire Manchester Merseyside UKRelease date: 19 January 2024.

Hikashop 5.0.3 is the latest release by Hikari, developer of this excellent eCommerce extension for the Joomla! CMS.

This is a Security Fix which addresses a stored XSS trough SVG file upload security issue.

This version is compatible with Joomla! 4 and PHP 8.1.

Read more: Hikashop Change Log.

The developer's release notes indicate that Hikashop is also compatible with Joomla! 5.

We have not yet however been able to confirm it will work with the Joomla! 5 CMS when the Backward Compatibility Plugin is disabled (recommended by The Joomla! Project for improved performance).

What should you do?

We consider the options in our related Joomla! User Guide article at the following link.

Read more Backward Compatibility Plugin.

 

Heads Up

Don't be put off by recent Security Releases. They show the developer is actively developing their extension.

The extension to worry about is the one which is not in active development.

In its Release Notes the developer states:

"We fixed a medium severity RXSS attack with the filter system in HikaShop Business.

Affected versions of the Business edition are from the 4.2.0 to the 4.7.4."

In its Release Notes the developer states:

"We fixed a SQL injection vulnerability which could allow access to data from the database from the backend order edition area. Please update your HikaShop if you're using an older version of HikaShop."

 

Useful HikaShop Information

You will find comprehensive instructions for how to use HikaShop at the following link.

Read more: HikaShop Documentation.

These are backed up by first rate customer support, provided via the HikaShop Forum.

Read more: HikaShop Forum.

Back up before updating any 3rd party Joomla! extension

Any update can break your website.

Perform a FULL backup of your website (database and files) before installing any update.

Read more: How to back up your website.

Read more: How to manage 3rd party extensions.

 

Make Joomla! CMS Security your #1 Priority

Joomla! Help Support Warrington Cheshire Manchester Merseyside UKWe offer Joomla! coaching, help and support to businesses and organisations across Cheshire, Manchester, Merseyside, North West England & the UK.

Learn how to manage Joomla! website security.

Joomla! Help Support Warrington Cheshire Manchester Merseyside UKRelease date: 19 January 2024.

Hikashop 5.0.3 is the latest release by Hikari, developer of this excellent eCommerce extension for the Joomla! CMS.

This is a Security Fix which addresses a stored XSS trough SVG file upload security issue.

This version is compatible with Joomla! 4 and PHP 8.1.

Read more: Hikashop Change Log.

The developer's release notes indicate that Hikashop is also compatible with Joomla! 5.

We have not yet however been able to confirm it will work with the Joomla! 5 CMS when the Backward Compatibility Plugin is disabled (recommended by The Joomla! Project for improved performance).

What should you do?

We consider the options in our related Joomla! User Guide article at the following link.

Read more Backward Compatibility Plugin.

 

Heads Up

Don't be put off by recent Security Releases. They show the developer is actively developing their extension.

The extension to worry about is the one which is not in active development.

In its Release Notes the developer states:

"We fixed a medium severity RXSS attack with the filter system in HikaShop Business.

Affected versions of the Business edition are from the 4.2.0 to the 4.7.4."

In its Release Notes the developer states:

"We fixed a SQL injection vulnerability which could allow access to data from the database from the backend order edition area. Please update your HikaShop if you're using an older version of HikaShop."

 

Useful HikaShop Information

You will find comprehensive instructions for how to use HikaShop at the following link.

Read more: HikaShop Documentation.

These are backed up by first rate customer support, provided via the HikaShop Forum.

Read more: HikaShop Forum.

Back up before updating any 3rd party Joomla! extension

Any update can break your website.

Perform a FULL backup of your website (database and files) before installing any update.

Read more: How to back up your website.

Read more: How to manage 3rd party extensions.

 

Make Joomla! CMS Security your #1 Priority

Joomla! Help Support Warrington Cheshire Manchester Merseyside UKWe offer Joomla! coaching, help and support to businesses and organisations across Cheshire, Manchester, Merseyside, North West England & the UK.

Learn how to manage Joomla! website security.