I know it was an urgent fix, but some announcement would have been nice. They're usually pretty good about letting us know about other changes.
I know it was an urgent fix, but some announcement would have been nice. They're usually pretty good about letting us know about other changes.
So glad I saw this thread today! I was pulling my hair trying to figure out why the error was being thrown. Made the edit to CURLOPT_SSLVERSION from 3 to 4 and that seems to have done the trick! Yea! Thanks PayPal for letting us know!
.
Zen Cart - putting the dream of business ownership within reach of anyone!
Donate to: DrByte directly or to the Zen Cart team as a whole
Remember: Any code suggestions you see here are merely suggestions. You assume full responsibility for your use of any such suggestions, including any impact ANY alterations you make to your site may have on your PCI compliance.
Furthermore, any advice you see here about PCI matters is merely an opinion, and should not be relied upon as "official". Official PCI information should be obtained from the PCI Security Council directly or from one of their authorized Assessors.
Please see official recommendation from Zen Cart Team: http://www.zen-cart.com/showthread.p...yment-security
That Software Guy. My Store: Zen Cart Support
Available for hire - See my ad in Services
Plugin Moderator, Documentation Curator, Chief Cook and Bottle-Washer.
Do you benefit from Zen Cart? Then please support the project.
All the carts I have been checking on are getting this error too. I tried the fix on one cart and 5 minutes later an order came through so the fix worked. Will this be the permanent fix or should we expect to need to update the paypal express module in the near future?
For now this is a known and verified fix, and worth rolling out to all your sites immediately.
However, it's early days on this we are indeed researching whether there are even better fixes available. But that's NO reason to not apply the known fix NOW.
Time will tell whether there is an even better fix. We will post in the Release Announcements if there is an updated better solution.
.
Zen Cart - putting the dream of business ownership within reach of anyone!
Donate to: DrByte directly or to the Zen Cart team as a whole
Remember: Any code suggestions you see here are merely suggestions. You assume full responsibility for your use of any such suggestions, including any impact ANY alterations you make to your site may have on your PCI compliance.
Furthermore, any advice you see here about PCI matters is merely an opinion, and should not be relied upon as "official". Official PCI information should be obtained from the PCI Security Council directly or from one of their authorized Assessors.
Is it only with IE? I was under the impression that Chrome and Firefox work and do not have the vulnerability.
.
Zen Cart - putting the dream of business ownership within reach of anyone!
Donate to: DrByte directly or to the Zen Cart team as a whole
Remember: Any code suggestions you see here are merely suggestions. You assume full responsibility for your use of any such suggestions, including any impact ANY alterations you make to your site may have on your PCI compliance.
Furthermore, any advice you see here about PCI matters is merely an opinion, and should not be relied upon as "official". Official PCI information should be obtained from the PCI Security Council directly or from one of their authorized Assessors.
I take it this doesn't affect paypal website payments standard? I haven't had any issues today... ?
Phil Rogers
A problem shared is a problem solved.
Bookmarks