X-Cart: shopping cart software

X-Cart forums (https://forum.x-cart.com/index.php)
-   General questions (X-Cart 5) (https://forum.x-cart.com/forumdisplay.php?f=66)
-   -   jQuery version (https://forum.x-cart.com/showthread.php?t=76550)

amarquis 09-20-2018 03:35 AM

jQuery version
 
Why does X-Cart Multi-vendor 5.3.5.5 load jQuery version 1.11.3 which was released in April 2015 and has received 8 major version updates since?

I'd really like to know the reason. What will happen if I replace it by the latest stable release?

cflsystems 09-20-2018 05:26 AM

Re: jQuery version
 
Because XC has way too much code using jQuery and going with a new version of jQuery every time it is released it's going to be a major pain from XC devs to check/update everything related to it.
So they choose the easy route of keeping this very old version because it works with the code there is.
XC has always been extremely slow at keeping 3rd party libraries they use up to date.
You can replace it if you want but be advised there might be issues here or there and with any 3rd party modules using jQuery as well.

amarquis 09-20-2018 06:41 AM

Re: jQuery version
 
Yes that's what I thought and I won't even try to update to 2.x or 3.x and pull my hair for weeks... Still 1.11.3 is pretty old. Time for some work maybe...

joestern 01-02-2019 04:43 PM

Re: jQuery version
 
jQuery earlier than 3.0.0 is vulnerable to hacks. See this NIST report:

https://nvd.nist.gov/vuln/detail/CVE-2015-9251

I really, really wish they'd upgrade. While we wait, I have to pay $25/month for not being PCI compliant due to this.

Plus, it truly is a known security risk, so hackers may target X-Cart sites knowing that we all have this older version.

xim 01-03-2019 02:12 AM

Re: jQuery version
 
X-Cart v5.4.x will have jQuery version 3.x


All times are GMT -8. The time now is 05:05 PM.

Powered by vBulletin Version 3.5.4
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.