/var/softaculous/presta8
NameSizeModeActions
images/-0755rm
php53/-0755rm
php56/-0755rm
php71/-0755rm
php81/-0755rm
php82/-0755rm
.htaccess32210644editdlrm
bootstrap.php61770644editdlrm
changelog.txt21050644editdlrm
clone.php233860644editdlrm
clone_bootstrap.php63060644editdlrm
edit.php50440644editdlrm
edit.xml4470644editdlrm
extend.php86510644editdlrm
fileindex.php3830644editdlrm
import.php67380644editdlrm
info.xml46620644editdlrm
install.js11500644editdlrm
install.php196500644editdlrm
install.xml15420644editdlrm
md527690644editdlrm
new_order.html582840644editdlrm
notes.txt24560644editdlrm
order_conf.html574720644editdlrm
parameters.php8320644editdlrm
parameters.yml110644editdlrm
return_slip.html449150644editdlrm
robots.txt33090644editdlrm
settings.inc.php230644editdlrm
shop1.json30790644editdlrm
soft_delete.php31520644editdlrm
update_appkey.php5440644editdlrm
update_pass.php4970644editdlrm
_bootstrap.php62570644editdlrm
Edit: /var/softaculous/presta8/changelog.txt (2105B)
#################################### # v8.2.8 - (2026-08-12) #################################### - Core: - Improvement: - GHSA-xrwj-pq6w-f8m4 Validate image URLs on CSV import to prevent Server-Side Request Forgery (by @clotairer & @matthieu-rolland, vulnerability reported by lrui1) - GHSA-w6j9-q9rq-wrqg Escape leading formula characters in CSV exports (by @clotairer & @matthieu-rolland, vulnerability reported by Suphawith Phusanbai) - GHSA-2cr4-vw9p-pjvf Parse the X-Forwarded-For header from right to left to prevent IP spoofing (by @clotairer & @matthieu-rolland, vulnerability reported by Pedro Gabaldón Juliá from ITRESIT) - GHSA-whxq-pxj5-qq7v Escape identifiers in legacy admin list filters to prevent SQL injection (by @clotairer & @matthieu-rolland, found by Savio from Doyensec in collaboration with Anthropic Research) - GHSA-jf3w-9rmr-5rcr Restrict the notifications endpoints to authorised employees (by @clotairer & @matthieu-rolland, vulnerability reported by Robert Scherer) #################################### # v8.2.7 - (2026-06-03) #################################### - Core: - Bug fix: - #231: Update faceted search (by @jolelievre) #################################### # v8.2.6 - (2026-04-16) #################################### - Back Office - Improvement: - GHSA-w9f3-qc75-qgx9 Prevent xss exploitation via unprotected variables in customer threads (found by Savio from Doyensec in collaboration with Anthropic Research) #################################### # v8.2.5 - (2026-03-13) #################################### - Front Office - Improvement: - GHSA-35pf-37c6-jxjv Prevent xss exploitation via unprotected variables in template - GHSA-283w-xf3q-788v Fix improper use of validation framework #################################### #################################### # v8.2.4 - (2026-02-03) #################################### - Front Office - Improvement: - GHSA-67v7-3g49-mxh2 Protect users from time based email enumeration attacks (by @matthieu-rolland, vulnerability reported by Lam Yiu Tung)