News:

AbanteCart v1.4.2 is released.

Main Menu

Recent posts

#1
Tips and Tricks / Natural Remedies for Achalasia
Last post by herbalcareproducts - Today at 05:41:28 AM
Living with achalasia can be extremely challenging, especially when swallowing difficulties, chest discomfort, and digestive issues interfere with daily life. While modern medicine offers treatments such as dilation or surgery, many people are now turning toward holistic and supportive approaches. One such option is trying a <a href="https://www.herbal-care-products.com/product/achalasia/">Natural Remedy for Achalasia</a> in the form of herbal supplements.
#2
Configuration / Re: Help for Italian language ...
Last post by Jack Rubio - Today at 05:39:46 AM
If you want to add Italian language support, you'll need to download and install the Italian language extension or pack for your software. Usually, you can find it under Settings → Language → Add/Download languages.

For example:

On browsers like Chrome/Firefox, go to the extensions/add-ons store and search for Italian language pack.

On Windows or Mac, you can add Italian through the system's language settings.

If it's a specific app (like LibreOffice, WordPress, etc.), check their official site for the Italian language pack download and follow the installation steps provided.

If you let me know the exact program or platform you're using, I can give you the direct link and step-by-step instructions.
#3
General Support / Red Jasper Bracelet for Streng...
Last post by Tanya - Today at 03:17:18 AM
When it comes to gemstones that truly connect with the heart and spirit, the Red Jasper Bracelet holds a very special place. This crystal is often known as the "stone of endurance," helping people restore strength, energy, and a sense of inner balance in their lives. Many people in spiritual and healing communities wear it as a daily companion because it supports both emotional grounding and physical vitality.

I recently came across the beautiful collection at daivikcart, and I must say, their Red Jasper Bracelet designs are not only stylish but also carry that authentic natural energy. The smooth red beads, each one unique with its earthy tones, make you feel more connected to nature every time you wear it. It's not just about looks—it's about how it makes you feel within.

On forums like this, we often share experiences, so let me add mine. Wearing a Red Jasper Bracelet during stressful workdays helped me stay calmer and more centered. Instead of reacting in haste, I found myself responding with more clarity and patience. For some, this bracelet is also believed to boost stamina, making it ideal for long working hours or even workouts.

What makes daivikcart special is how they blend authenticity with a human touch. When you receive your bracelet, it doesn't feel like just another piece of jewelry—it feels like a thoughtful companion crafted with care. Their focus on natural stones means you're not only wearing a bracelet but also carrying a piece of the earth's natural energy with you.

If you're looking for something that brings positivity, confidence, and strength, the Red Jasper Bracelet from daivikcart is truly worth exploring. It's more than an accessory—it's an experience of balance and grounding.

#4
General Support / Harmonizing Life: Secrets of V...
Last post by rkbivs - Today at 02:55:05 AM
In today's fast-paced world, people are constantly searching for ways to restore balance and meaning in their lives. One of the most profound sources of guidance lies in the timeless wisdom of Vedic Science. Rooted in ancient Indian traditions, Vedic Science offers a holistic understanding of life, connecting the physical, mental, and spiritual dimensions of human existence.

At its core, Vedic Science is not just about rituals or philosophy—it is a complete system of knowledge that harmonizes the individual with the universe. From Ayurveda, which nurtures health through natural remedies, to Yoga and Meditation, which align body and mind, every branch of this knowledge serves as a pathway to inner balance and peace. Astrology and Numerology, too, are integral parts of Vedic wisdom, providing deeper insights into destiny and decision-making.

What makes Vedic Science unique is its universality. Its principles can be applied in daily life regardless of culture or background. Whether it's choosing the right lifestyle habits, understanding cosmic influences, or cultivating spiritual awareness, Vedic Science provides tools to live in harmony with nature and the self.

Modern learners increasingly turn to structured programs, such as those offered by the Bhartiya Institute of Vedic Science, to explore this treasure of ancient wisdom. By studying these timeless teachings, individuals can discover secrets that improve their personal well-being and create harmony in their relationships, work, and environment.

Vedic Science is not just ancient knowledge—it is a living guide to harmonizing life today.
#5
Security / Re: CVE-2025-50972Vulnerabili...
Last post by Basara - September 01, 2025, 03:18:43 AM
Hello.
We are aware of CVE-2025-50972. Our development team has already addressed the issue.

You can apply the fix in the following commit on our GitHub repository:

https://github.com/abantecart/abantecart-src/commit/84cdc72d10d7b1de9947b746db15e4985ddda4c8?w=1

If you do not want to patch the code, you can disable the Page builder extension
#6
Security / CVE-2025-50972Vulnerability i...
Last post by kvlab - August 31, 2025, 10:34:01 PM
I just saw this on CVE Security Scorecard.  It's on quite a few security sites.

Vulnerability Details : CVE-2025-50972   
AbanteCart 1.4.2 Unauthenticated SQL Injection via tmpl_id Parameter in index.php

SQL Injection vulnerability in AbanteCart 1.4.2, allows unauthenticated attackers to execute arbitrary SQL commands via the tmpl_id parameter to index.php. Three techniques have been demonstrated: error-based injection using a crafted FLOOR-based payload, time-based blind injection via SLEEP(), and UNION-based injection to extract arbitrary data.
Base Score: 9.8     Base Severity: CRITICAL   Impact Score 5.9    First Seen 8/27/2025

 CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')   
The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.
https://www.cvedetails.com/cve/CVE-2025-50972/

Any idea's or a patch that can be done?  I'm thinking maybe write a line to block the query string right into Apache in pre-main include, and block it server wide, as I plan only on having one store a dev site, and will own any other sites on there. I can't think of any reason this would cause me issues. Any thoughts ?





#7
Support / Re: Can refunds be issued from...
Last post by ixl - August 31, 2025, 09:11:02 AM
I am extremely surprised at this.

You should still be able to credit back the order and produce a credit note.

Its a standard function IMHO.

Crediting the customer for future orders is not the same and even if you arrange the credit from the merchant gateway you use, you should still then be able to create the credit note of the order.

Very strange.

#8
Embedding / Re: Add To Cart Button Not Sho...
Last post by Dr_Sandra_Lee - August 30, 2025, 09:40:51 AM
The suggestions here about checking the core files and module settings are excellent. A simple thing that's often overlooked is the browser cache.

Sometimes the changes you make on the backend don't immediately reflect on the front end because the browser is showing a cached version of the page. It's always worth trying a hard refresh (Ctrl+F5) or clearing your browser's cache to see if that solves the issue. It's a quick fix that can sometimes save a lot of debugging time!
#9
General Discussion / Re: Removing SEO keyword on V....
Last post by Gargi Rana - August 28, 2025, 07:17:50 AM
If you deleted a category but still cannot reuse old SEO keywords make sure the category is fully removed and deleted from trash and remove any redirects created by SEO plugin .Then refresh/clear your site and browser cache so the keywords became usable again.
#10
General Support / Re: How do i export images?
Last post by fedorajoiner - August 27, 2025, 09:33:42 PM
Quote from: ryanVC on July 06, 2016, 06:21:37 AMhello

is there away to export my full  product images thats been uploaded to the cart to a csv file  , so i can have the image urls?

Yes, you can export product data (including image URLs) to CSV by using your e-commerce platform's built-in export tool or a plugin/app; check the product export settings and ensure the "image" or "image URL" field is included in the CSV.

Forum Rules Code of conduct
AbanteCart.com 2010 -