Skip to content

Commit

Permalink
Merge pull request #744 from AdobeDocs/security-release-notes-Feb-2024
Browse files Browse the repository at this point in the history
Commerce Security Release Notes February 2024
  • Loading branch information
jfrontain authored and GitHub Enterprise committed Feb 1, 2024
2 parents bebc27e + a5f172a commit 8e56449
Show file tree
Hide file tree
Showing 4 changed files with 102 additions and 0 deletions.
3 changes: 3 additions & 0 deletions help/release/TOC.md
Expand Up @@ -32,14 +32,17 @@ recommendations: noDisplay, noCatalog
- [2.4.0](release-notes/open-source/2-4-0.md)
- Security patch releases {#security-patches}
- [Overview](release-notes/security/overview.md)
- [2.4.6-p4](release-notes/security/2-4-6-p4.md)
- [2.4.6-p3](release-notes/security/2-4-6-p3.md)
- [2.4.6-p2](release-notes/security/2-4-6-p2.md)
- [2.4.6-p1](release-notes/security/2-4-6-p1.md)
- [2.4.5-p6](release-notes/security/2-4-5-p6.md)
- [2.4.5-p5](release-notes/security/2-4-5-p5.md)
- [2.4.5-p4](release-notes/security/2-4-5-p4.md)
- [2.4.5-p3](release-notes/security/2-4-5-p3.md)
- [2.4.5-p2](release-notes/security/2-4-5-p2.md)
- [2.4.5-p1](release-notes/security/2-4-5-p1.md)
- [2.4.4-p7](release-notes/security/2-4-4-p7.md)
- [2.4.4-p6](release-notes/security/2-4-4-p6.md)
- [2.4.4-p5](release-notes/security/2-4-4-p5.md)
- [2.4.4-p4](release-notes/security/2-4-4-p4.md)
Expand Down
33 changes: 33 additions & 0 deletions help/release/release-notes/security/2-4-4-p7.md
@@ -0,0 +1,33 @@
---
title: Adobe Commerce 2.4.4-p7 release notes
description: Learn about fixes for security issues in the 2.4.4-p7 Adobe Commerce release.
---

# Adobe Commerce 2.4.4-p7 release notes

Adobe Commerce 2.4.4-p7 is a security release that provides five security fixes that enhance your Adobe Commerce 2.4.4 or Magento Open Source 2.4.4 deployment. It provides fixes for vulnerabilities that have been identified in previous releases.

{{bics}}

## What's in this release?

Security enhancements for this release improve compliance with the latest security best practices. This patch includes five security fixes. See [Adobe Security Bulletin](https://helpx.adobe.com/security/products/magento/apsb24-03.html) for the latest discussion of these fixed issues.

## Security highlights

This release introduces two significant security enhancements:

* **Changes to the behavior of non-generated cache keys**:

* Non-generated cache keys for blocks now include prefixes that differ from prefixes for keys that are generated automatically. (Non-generated cache keys are keys that are set through template directive syntax or the `setCacheKey` or `setData` methods.)
* Non-generated cache keys for blocks now must contain only letters, digits, hyphens (-), and underscore characters (_). <!-- AC-9831 -->

* **Limitations on the number of auto-generated coupon codes**. Commerce now limits the number of coupon codes that are automatically generated. The default maximum is 250,000. Merchants can use the new **[!UICONTROL Code Quantity Limit]** configuration option (**[!UICONTROL Stores]** > **[!UICONTROL Settings:Configuration]** > **[!UICONTROL Customers]** > **[!UICONTROL Promotions]**) to control this new limit. <!-- AC-8753 -->

## Installation and upgrade instructions

For instructions on downloading and upgrading to security patch releases, see [Quick start install](../../../installation/composer.md).

## More information?

For general information about security patches, see [Adobe Commerce release policy](https://experienceleague.adobe.com/docs/commerce-operations/release/planning/versioning-policy.html?lang=en#security-patch-release).
33 changes: 33 additions & 0 deletions help/release/release-notes/security/2-4-5-p6.md
@@ -0,0 +1,33 @@
---
title: Adobe Commerce 2.4.5-p6 release notes
description: Learn about fixes for security issues in the 2.4.5-p6 Adobe Commerce release.
---

# Adobe Commerce 2.4.5-p6 release notes

Adobe Commerce 2.4.5-p6 is a security release that provides five security fixes that enhance your Adobe Commerce 2.4.5 or Magento Open Source 2.4.5 deployment. It provides fixes for vulnerabilities that have been identified in previous releases.

{{bics}}

## What's in this release?

This patch includes five security fixes. See [Adobe Security Bulletin](https://helpx.adobe.com/security/products/magento/apsb24-03.html) for the latest discussion of these fixed issues.

## Security highlights

This release introduces two significant security enhancements:

* **Changes to the behavior of non-generated cache keys**:

* Non-generated cache keys for blocks now include prefixes that differ from prefixes for keys that are generated automatically. (Non-generated cache keys are keys that are set through template directive syntax or the `setCacheKey` or `setData` methods.)
* Non-generated cache keys for blocks now must contain only letters, digits, hyphens (-), and underscore characters (_). <!-- AC-9831 -->

* **Limitations on the number of auto-generated coupon codes**. Commerce now limits the number of coupon codes that are automatically generated. The default maximum is 250,000. Merchants can use the new **[!UICONTROL Code Quantity Limit]** configuration option (**[!UICONTROL Stores]** > **[!UICONTROL Settings:Configuration]** > **[!UICONTROL Customers]** > **[!UICONTROL Promotions]**) to control this new limit. <!-- AC-8753 -->

## Installation and upgrade instructions

For instructions on downloading and upgrading to security patch releases, see [Quick start install](../../../installation/composer.md).

## More information?

For general information about security patches, see [Adobe Commerce release policy](https://experienceleague.adobe.com/docs/commerce-operations/release/planning/versioning-policy.html?lang=en#security-patch-release).
33 changes: 33 additions & 0 deletions help/release/release-notes/security/2-4-6-p4.md
@@ -0,0 +1,33 @@
---
title: Adobe Commerce 2.4.6-p4 release notes
description: Learn about fixes for security issues in the 2.4.6-p4 Adobe Commerce release.
---

# Adobe Commerce 2.4.6-p4 release notes

Adobe Commerce 2.4.6-p4 is a security release that provides five security fixes that enhance your Adobe Commerce 2.4.6 or Magento Open Source 2.4.6 deployment. It provides fixes for vulnerabilities that have been identified in previous releases.

{{bics}}

## What's in this release?

This patch includes five security fixes. See [Adobe Security Bulletin](https://helpx.adobe.com/security/products/magento/apsb24-03.html) for the latest discussion of these fixed issues.

## Security highlights

This release introduces two significant security enhancements:

* **Changes to the behavior of non-generated cache keys**:

* Non-generated cache keys for blocks now include prefixes that differ from prefixes for keys that are generated automatically. (Non-generated cache keys are keys that are set through template directive syntax or the `setCacheKey` or `setData` methods.)
* Non-generated cache keys for blocks now must contain only letters, digits, hyphens (-), and underscore characters (_). <!-- AC-9831 -->

* **Limitations on the number of auto-generated coupon codes**. Commerce now limits the number of coupon codes that are automatically generated. The default maximum is 250,000. Merchants can use the new **[!UICONTROL Code Quantity Limit]** configuration option (**[!UICONTROL Stores]** > **[!UICONTROL Settings:Configuration]** > **[!UICONTROL Customers]** > **[!UICONTROL Promotions]**) to control this new limit. <!-- AC-8753 -->

## Installation and upgrade instructions

For instructions on downloading and upgrading to security patch releases, see [Quick start install](../../../installation/composer.md).

## More information?

For general information about security patches, see [Adobe Commerce release policy](https://experienceleague.adobe.com/docs/commerce-operations/release/planning/versioning-policy.html?lang=en#security-patch-release).

0 comments on commit 8e56449

Please sign in to comment.