VirtueMart 3.2.14 has been released to fix a serious XSS vulnerability that related to the administration area only. Therefore, most shops are not affected. If you are running a multi-vendor store or avoiding the risk of using this leak, you should update as soon as possible.
Since January 1, 2018, the French financial law n° 2017-1837 has obliged French eCommerce websites to use an extension that meets the requirements of inalterability, security, preservation and archiving of data for control of the French tax administration.
VirtueMart 3.2.10 - A Quick-fix Release
VirtueMart 3.2.10 has been released as a hotfix update. It contains PayPal payment fixing and other important fixes.
VirtueMart 3.2.8 Bug Fixes Release
VirtueMart 3.2.6 released last month to solve a XSS vulnerability and overhauled infrastructure. However, an error has been found in this VirtueMart version related to setting the default Joomla frontend language as the shop language. This issue has been fixed in latest VirtueMart version 3.2.8.
VirtueMart 3.2.6 has been released to address a minor XSS vulnerability present in previous versions as well as improve the infrastructure. It occurred when the features feeds and search were used together. It happened only for feed enabled, so administrators can close the leak by disabling the feed functions.
A new version of VirtueMart has come out with a small update on the payment gateway - PayPal plugin and a new PayPal product named PayPal Credit that allows to finance a purchase with PayPal's partner Comenity Capital Bank.