logo
Welcome to our new AbleCommerce forums. As a guest, you may view the information here. To post to this forum, you must have a registered account with us, either as a new user evaluating AbleCommerce or an existing user of the application. For all questions related to the older version of Gold and earlier, please go to AbleCommerce Gold forum. Please use your AbleCommerce username and password to Login. New Registrations are disabled.

Notification

Icon
Error

Options
Go to last post Go to first unread
Jay  
#1 Posted : Monday, September 11, 2023 1:05:39 PM(UTC)
Jay

Rank: Member

Groups: Authorized User, Developers
Joined: 11/12/2018(UTC)
Posts: 25

Thanks: 1 times
Was thanked: 4 time(s) in 3 post(s)
Has anyone tried to update jquery to version 3.5.0+ on AbleCommerce GOLD? If so, do you have a step-by-step of the process you followed?

Our PCI scan requires 3.5.0+ to pass, and I haven't managed to get our live site upgraded to AC 9 yet. Technically I don't need it to pass, since we aren't storing card information (we use CyberSource's hosted page for entry and store their tokens if necessary). However, the jquery vulnerability is an XSS type, so I'd like to mitigate if possible anyway.

Wanna join the discussion?! Login to your AbleCommerce Forums forum account. New Registrations are disabled.

judy at Web2Market  
#2 Posted : Thursday, September 14, 2023 6:51:25 AM(UTC)
judy at Web2Market

Rank: Advanced Member

Groups: Developers
Joined: 11/7/2018(UTC)
Posts: 289

Thanks: 21 times
Was thanked: 5 time(s) in 5 post(s)
Yes, we have on numerous sites. Just upload the new jquery file to the Scripts folder and replace all references to it in the pages. You may need to add jquery.migrate also. We have had to add that in the past so that the jquery replacement doesn't throw errors. After you change to the new jquery, be sure to use developer tools and test the site to make sure everything is still working OK.
Jay  
#3 Posted : Friday, September 15, 2023 11:59:16 AM(UTC)
Jay

Rank: Member

Groups: Authorized User, Developers
Joined: 11/12/2018(UTC)
Posts: 25

Thanks: 1 times
Was thanked: 4 time(s) in 3 post(s)
Thanks Judy, it helps to know that someone successfully accomplished it. I'll give it try when I have a chance.
Jay  
#4 Posted : Monday, November 13, 2023 8:20:39 AM(UTC)
Jay

Rank: Member

Groups: Authorized User, Developers
Joined: 11/12/2018(UTC)
Posts: 25

Thanks: 1 times
Was thanked: 4 time(s) in 3 post(s)
Follow up: I updated to jquery 3.7.1 and didn't have any problems. I did not need jquery.migrate. I had updated to jquery 3.3.1 quite a while ago, and had tweaked a few things with jqueryui when I did that, so that probably helped.
Katie S  
#5 Posted : Thursday, November 16, 2023 2:12:30 PM(UTC)
Katie S

Rank: Advanced Member

Groups: System, Administrators, Developers, Registered, HelpDesk
Joined: 10/29/2018(UTC)
Posts: 435

Thanks: 4 times
Was thanked: 34 time(s) in 33 post(s)
Thank you for the update. We're seeing more requests for PCI scans, so this will certainly be helpful for Gold installs.
Thanks for your support!

Katie
Secure eCommerce Software and Hosting
Users browsing this topic
Forum Jump  
You cannot post new topics in this forum.
You cannot reply to topics in this forum.
You cannot delete your posts in this forum.
You cannot edit your posts in this forum.
You cannot create polls in this forum.
You cannot vote in polls in this forum.