Skip to content

CoreShop

Developer Productivity

An eCommerce platform that extends Pimcore's capabilities for high‑efficiency, customizable online stores

PHP Latest 5.0.1 · 1d ago Security brief →

Features

  • Integrates advanced Pimcore features into an eCommerce solution
  • Provides a fully rewritten admin interface built on Pimcore Studio (React/TypeScript)
  • Supports modular development via Module Federation for independent bundle plugins

Recent releases

View all 15 releases →
Upgrade now
4.1.11 Security relevant
Auth

Password reset fixes + order token security

4.1.10 Bug fix
Notable features
  • Multi-select drag & drop support for objectMultihref condition lists
  • CLI command to set up states/regions for additional countries
  • [MessengerBundle] Auto-refresh and chart tooltip
Full changelog

What's Changed

  • Fix outdated Menu Bundle docs for ExtJs event handling by @Copilot in https://github.com/coreshop/CoreShop/pull/2966
  • Add multi-select drag & drop support for objectMultihref condition lists by @Copilot in https://github.com/coreshop/CoreShop/pull/2960
  • Add CLI command for setting up states/regions for additional countries by @Copilot in https://github.com/coreshop/CoreShop/pull/2959
  • [MessengerBundle] Add auto-refresh and chart tooltip by @Copilot in https://github.com/coreshop/CoreShop/pull/2965
  • Fix information exposure in OrderInvoiceController and OrderShipmentController by @Copilot in https://github.com/coreshop/CoreShop/pull/2962

New Contributors

  • @Copilot made their first contribution in https://github.com/coreshop/CoreShop/pull/2966

Full Changelog: https://github.com/coreshop/CoreShop/compare/4.1.9...4.1.10

4.1.9 Security relevant
Security fixes
  • Fix injection vulnerability in CustomerTransformerController
Full changelog

What's Changed

  • Fix Injection in CustomerTransformerController by @dpfaffenbauer in https://github.com/coreshop/CoreShop/pull/2945

Full Changelog: https://github.com/coreshop/CoreShop/compare/4.1.8...4.1.9

5.0.0 Breaking risk
Breaking changes
  • doctrine/dbal downgraded (specific version not stated)
Notable features
  • [FrontendBundle] Design v2 and Pimcore 12 compatibility
  • [IndexBundle] Optimize 404 Exception Handling on Index Item Deletion
  • [IndexBundle] Ignore missing 404 error when deleting non-existent document
Full changelog

What's Changed

  • [FrontendBundle] Design v2 and Pimcore 12 compatibility by @codingioanniskrikos in https://github.com/coreshop/CoreShop/pull/2744
  • [IndexBundle] Optimize 404 Exception Handling on Index Item Deletion by @aarongerig in https://github.com/coreshop/CoreShop/pull/2894
  • [IndexBundle] Ignore missing 404 error when deleting non-existent document by @aarongerig in https://github.com/coreshop/CoreShop/pull/2896
  • [CoreBundle] fix store values version preview with null values by @dpfaffenbauer in https://github.com/coreshop/CoreShop/pull/2912
  • [GraphQL] enable all translations for graphql by @dpfaffenbauer in https://github.com/coreshop/CoreShop/pull/2914
  • [Pimcore] downgrade doctrine/dbal by @dpfaffenbauer in https://github.com/coreshop/CoreShop/pull/2922
4.1.8 Breaking risk
Breaking changes
  • Minimum required Pimcore version is 11.5 (previous versions unsupported).
  • Minimum required PHP version is 8.3.
Notable features
  • [Messenger] dispatch `FailedMessageDetailsEvent` for customizing failed message details generation
  • [Messenger] wrap failed message details info modal data in `<pre>` tags
Full changelog

What's Changed

  • [Messenger] dispatch FailedMessageDetailsEvent to allow customization of failed message details generation by @jdreesen in https://github.com/coreshop/CoreShop/pull/2911
  • [Messenger] wrap failed message details info modal data in <pre> tags by @jdreesen in https://github.com/coreshop/CoreShop/pull/2910
  • [Pimcore] require Pimcore 11.5 only and test for PHP 8.3 by @dpfaffenbauer in https://github.com/coreshop/CoreShop/pull/2937
  • [CoreBundle] fix reports injection by @dpfaffenbauer in https://github.com/coreshop/CoreShop/pull/2936

Full Changelog: https://github.com/coreshop/CoreShop/compare/4.1.7...4.1.8

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

About

Stars
290
Forks
163
Languages
PHP TypeScript Gherkin

Beta — feedback welcome: [email protected]