Magento 2.4.6 p2 is now available. This release includes minor changes and bug fixes.
Magento 2.4.6 p2 is an Open Source ecommerce web application launched on March 31, 2008. It was created by Varien, building on components of the Zend Framework.
Magento 2.4.6 p2 Changelog
Bug Fixes
jQuery-UI
library version 1.13.1 has a known security vulnerability (CVE-2022-31160) that affects multiple versions of Adobe Commerce and Magento Open Source. This library is a dependency of Adobe Commerce and Magento Open Source 2.4.4, 2.4.5, and 2.4.6- XML Injection (aka Blind XPath Injection) (CWE-91)
- Improper Neutralization of Special Elements used in an OS Command (‘OS Command Injection’) (CWE-78)
- Improper Access Control (CWE-284)
- The value of fastcgi_pass in the nginx.sample file has been returned to its previous (pre-2.4.6-p1) value of fastcgi_backend. This value was inadvertently changed to php-fpm:9000 in Adobe Commerce 2.4.6-p1.
- The ACSD-51892 patch fixes the performance issue that arises from loading the
app/etc/env.php
andapp/etc/config.php
files each time deployment configuration values are accessed within a single request. The excessive file reading puts strain on the system, leading to a deterioration in overall performance. This patch is available when the Quality Patches Tool (QPT) 1.1.33 is installed. The patch ID is ACSD-51892. Please note that the issue is scheduled to be fixed in Adobe Commerce 2.4.7.
Although updates are tested, you’re always encouraged to backup your files before patching.
Tags: Billing System, E-Commerce, ecommerce, Softaculous
Related Links
- Live Demo:
See Magento in action (Softaculous site (External link)) - Official Website:
Learn more about Magento software (External link) - Run Magento in your website:
Please Contact us for more information or start any Hosting Plan and install Invoice Ninja from Softaculous software library - Magento Changelog:
To read changelog source Click Here (GitHub External link)