122 Messages
•
7.3K Points
Cross-Site Scripting on Checkout
FYI -
I noticed info about the recent 'upgrade/maintenance' on Sept 23, that a potential 'Cross Site Scripting' issue on Checkout had been corrected but maybe it hasn't.
As mentioned in a previous post, I have seen 'odd customer behavior' (on Checkout not View Cart) since we installed the Trust Seal on the Custom Checkout Footer (which is something I had not used until the install early September) and then after is when I started to see the unusual behavior (during Checkout customers began exploring our About Page which is something they never did during actual Checkout (really raised a Red Flag and at first thought it was because the Trust Seal was not matching the SSL name) but this behavior is continuing and I know it has cost us a number of completed sales (quite frankly, cannot blame consumers - it would stop me from purchasing also).
Below is a snip of another 'Homestead Store' Checkout page taken this morning (10/3/13):
I noticed info about the recent 'upgrade/maintenance' on Sept 23, that a potential 'Cross Site Scripting' issue on Checkout had been corrected but maybe it hasn't.
As mentioned in a previous post, I have seen 'odd customer behavior' (on Checkout not View Cart) since we installed the Trust Seal on the Custom Checkout Footer (which is something I had not used until the install early September) and then after is when I started to see the unusual behavior (during Checkout customers began exploring our About Page which is something they never did during actual Checkout (really raised a Red Flag and at first thought it was because the Trust Seal was not matching the SSL name) but this behavior is continuing and I know it has cost us a number of completed sales (quite frankly, cannot blame consumers - it would stop me from purchasing also).
Below is a snip of another 'Homestead Store' Checkout page taken this morning (10/3/13):
No Responses!