On March 22, 2023, a vulnerability was discovered within WooCommerce Payments that, if exploited, could permit unauthorized admin access to impacted stores. We immediately deactivated the impacted services and mitigated the issue for all websites hosted on WordPress.com, Pressable, and WPVIP. The vulnerability was reported by Michael Mazzolini of GoldNetwork, who was conducting white-hat testing […]
Category: Developer Advisory
Since January 2022, we have been working hard to optimize the performance of WooCommerce by focusing on Orders and how we can more efficiently manage Order data. We wanted to improve the experience for Merchants and their customers while creating a simpler structure for developers. The result is High-Performance Order Storage (HPOS). In November, we […]
Developer Advisory: For the sake of transparency, here is a detailed account of why 7.2.1 was rolled back and necessitated a 7.2.2 fix release: The details How can I tell if this affects me? You will be able to quickly see if you are experiencing an issue by checking your log files. The bug produces […]
We are planning to introduce some changes to the way WooCommerce templates work in block themes. Those include improving template hierarchy, creating a Products by Attribute template and adjusting how templates are listed in the Site Editor. We started a GitHub discussion with all details about the changes we have planned and the rationale for […]
Update: after additional internal discussions we’ve decided to reverse this decision. WooCommerce will continue to use Yoda conditions as outlined in the WordPress PHP coding standards to stay aligned with the wider WordPress ecosystem. We’re keeping the previous announcement for transparency. Yoda conditions are a programming style in which the normal order of operands in […]