Security Patch for VirtueMart 1.1.7 and below

Posted in Latest News

Some days ago the VirtueMart Team was informed of another security problem, found by Steven Seely of Stratsec. That's why we have made available a patch for VirtueMart 1.1.7 to fix this security issue. All VirtueMart users are urged to apply this patch as soon as possible. How to do that: Follow the instructions in our Security Bulletin 2011-02-18.


About this patch
VirtueMart 1.1.7a is a patch that fixes an SQL injection problem that was revealed after VirtueMart 1.1.7 had been released. Read more about it in our Security Bulletin 2011-02-18.

Thanks to Francesco for developing and creating this patch package so quickly!

Security release: VirtueMart 1.1.7

Posted in Latest News

The VirtueMart Developer Team has published VirtueMart 1.1.7 to fix a security issue. All VirtueMart users are urged to upgrade to this new version as soon as possible. If you don't want to update, you can simply apply a patch to fix the security issue in your installation.

Important: please read on before upgrading or installing!


Changed Roadmap to virtuemart 2 and latest updates from team for the this year.

Posted in Latest News

While the beta phase, people very often mixed up the different versions, the name of the file for installation for vm1.1 is So people often saw just the 15 and got confused. As we started with vm1.5 it was planned only to port the backend to MVC, fast as possible. But then we decided also to port the frontend and changed a lot core behaviours (Templating, Calculation, Plugins). We were asked why we do not call it virtuemart 2. The core is completly rewritten, the tables differently organized and so on.

So from now on the branch virtuemart 1.5 is renamed to virtuemart 2, to reflect the progress better and to avoid confusion.
We will change all names and projects (redmine, forum) to the new name during the weekend.

In future will use the odd number system, so we could call vm1.5 also vm1.9 or so, but this would lead in the situation now to more confusion. The roadmap for the this year is to complete virtuemart 2 and to enhance it during the year with a wide ranging plugin structure, security, speed and more multi-x features (multistore, multivendor, multidomain). The generall philosophy is now to use the pluginsystem as best as possible and to provide a small stable core.

The next beta (now just vm2beta2 in future versioning system it would have been vm1.9.3) will contain joomla 1.6 compability. It will also contain a coupon system, the review system is on the way. We will provide more layouts and a new template. We are just adding a browse category view (at the moment there is only a browse products of a category view). It will contain more hooks for plugins. When beta2 is released, all 3thd party developers are invited to give ideas to the plugin system (lacking hooks) and to write payment plugins shipped with the payment plugin all in one installer.

Then we freeze implementing features and will take a special look on the security, fix uprising bugs and make a Release Candidate (vm2 RC, in future versioning system vm1.9.4) which should be already ready for operative environment. The deadline for the RC is end of march.
The next subversion vm2.2 maybe end of the year.

Beta virtuemart 1.5 released

Posted in Latest News

The new VirtueMart version 1.5 has plenty of new features and behaviours. We did not intend to add new features, but it was necessary to reorganize some old features and in the process some new ones were created. For more information please look in the Announcements Forum.

Key features:
- in general *we use now the default joomla MVC pattern*.

- the shop is now vendor based and multivendor capable.

- there is a new plugin system working within Joomla which makes plugin writing for VirtueMart similar to plugin writing for Joomla. 

- a new Template system working within Joomla.

- the joomla language file system is used

- a new cart, which is now an true object and holds the user information in a session.

- a completly new calculation system, with a calculation class doing all the work. 

- multidiscounts added.

- rule system for tax and discounts added.

- price generation based on costprice (with currency exchange).

- there are now three configurable paths for the pictures of the shop and products.

- new permission object. We did a step to enhance the security, using a permission object.

- new user object.- new user accountmanagment system

- new Imagehandler

- countries and states are configurable

- in general increased the possibility to publish/unpublish (states, country, ...)

- SEF and SSL working with Joomla.- enhanced database layout

- better performance, lower ram usage

Already known "bugs" or partly implemented features.

- manufacturer page not working.

- vendor page is not working atm.

- SEF not working.

- review not working

- coupons not working

- quantity based discounts not working

- the view "featured products" not working correctly

- some configuration settings not working/not used.

- order view has some glitches.

- only a few payment plugins are ported yet

- shipment plugins not implemented, but shippers

- migration tool not finished

For the final release we want to ensure that these features work, but maybe in different ways than in VM1.1. For example, the review and coupons may be implemented as plugins, the featured product page maybe converted in a kind of "check calculated prices of products" view, the manufacturer page is maybe just an autogenerated category only showing products of the manufacturer and so on.
Of course we hope that these release shows that we are alive and that the new VirtueMart will lead the eCommerce scene into a new era and set a new standard.


Try it, download VirtueMart 1.5 Beta 1 and the payment plugin all in one installer now

Question or any topic to share about the new release ? Register to the forum and join the VirtueMart 1.5 General Question Board

for testing, development and bugs here Virtuemart 1.5 Development and bug reports

Don't forget to checkout VirtueMart 1.5 version status in order to remain updated about our development cycle!

We use cookies on our website. Some of them are essential for the operation of the site, while others help us to improve this site and the user experience (tracking cookies). You can decide for yourself whether you want to allow cookies or not. Please note that if you reject them, you may not be able to use all the functionalities of the site.