Solidus Blog

Stay up to date on the latest from Solidus.

The Future of Spree and the Future of Solidus

Spree Commerce, the company that has stood behind Spree OSS over the past years has announced that it will stop investing in the open source project and that...

Spree Admin broken by alerts

Using an old version of Spree? Admin down right now? You're probably encountering an issue with the alert system. In Spree, requests to the admin "phone home...

Information disclosure vulnerability through Ransack searches

We've released Solidus 1.0.1 to address a major security vulnerability. Versions Affected Solidus 1.0.0, All versions of Spree Fixed Versions Solidus...

Version 1.0.0

github rubygems We're happy to announce Solidus 1.0.0, an updated fork of Spree 2.4 spearheaded by the developers at Bonobos and FreeRunning Technologies.

Remote Code Execution and File Disclosure Vulnerability

We've discovered another urgent security vulnerability in the Spree/Solidus API. This is limited to attackers who have API access, however on many stores this...

Spree API Security Vulnerability

On Friday we came across a serious security vulnerability in the Spree/Solidus API. The effect of this vulnerability is that an attacker is able to access any...

Example Article

This is an example article. You probably want to delete it and write your own articles! This will then link to the article, where READMORE (or the text you have configured the extension to match on) will be removed.

Help Center