The Moz Q&A Forum

    • Forum
    • Questions
    • My Q&A
    • Users
    • Ask the Community

    Welcome to the Q&A Forum

    Browse the forum for helpful insights and fresh discussions about all things SEO.

    1. SEO and Digital Marketing Q&A Forum
    2. Categories
    3. Intermediate & Advanced SEO
    4. Are these Magento security concerns urgent?

    Are these Magento security concerns urgent?

    Intermediate & Advanced SEO
    4 3 143
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as question
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • localwork
      localwork last edited by

      Hey Mozzers!

      I recently started working with a new Magento programmer for our ecommerce site. He sent me this scan/report outlining some security issues that need to be addressed.

      This is a new partnership so I'm not sure which issues should be a major concern, or if I should not focus on them. Would you be able to give me your opinion on the importance of the security issues?

      https://www.magereport.com/scan/?s=http://metallumcreations.com/

      1 Reply Last reply Reply Quote 0
      • RyanPurkey
        RyanPurkey last edited by

        It's a best practice to make sure your whatever software your site is using is patched and up to the latest addition. A high risk warning from that page, "Patch SUPEE-6285 fixes a leak where hackers can take over customer's sessions and download lists of your shop's order details through the RSS feature. Released July 7th, 2015." Would certainly be worth fixing.

        From an search perspective, Google has stated that security is a ranking signal: https://webmasters.googleblog.com/2014/08/https-as-ranking-signal.html

        Security is a top priority for Google. We invest a lot in making sure that our services use industry-leading security, like strong HTTPS encryption by default. That means that people using Search, Gmail and Google Drive, for example, automatically have a secure connection to Google.

        Beyond our own stuff, we’re also working to make the Internet safer more broadly. A big part of that is making sure that websites people access from Google are secure. For instance, we have created resources to help webmasters prevent and fix security breaches on their sites.

        We want to go even further. At Google I/O a few months ago, we called for “HTTPS everywhere” on the web.

        So making sure your site is secure can have multiple benefits.

        localwork 1 Reply Last reply Reply Quote 1
        • localwork
          localwork @RyanPurkey last edited by

          Thanks for the response Ryan!

          Clients are always showing me the spam emails they receive with immediate 'warnings about site security'. Since this is a new partnership with this particular programmer, I couldn't discern whether the issues were important/critical or junk.

          Thanks again!

          1 Reply Last reply Reply Quote 0
          • MattRoney
            MattRoney last edited by

            Hi localwork!

            If Ryan answered your question, would you mind marking his response as a "Good Answer?" It'll get him some bonus MozPoints, and it helps us keep track of things. 🙂

            1 Reply Last reply Reply Quote 0
            • 1 / 1
            • First post
              Last post
            • Magento missing SEO fields?
              Christy-Correll
              Christy-Correll
              0
              4
              65

            • Magento Core_URL_Rewrite Problems
              Vijay-Gaur
              Vijay-Gaur
              1
              5
              1.8k

            • Ranking with subdomain - Urgent
              donford
              donford
              0
              2
              231

            • Disavow straightaway? - Urgent
              Mobilio
              Mobilio
              0
              7
              148

            • Schema Markup for Magento
              Everett
              Everett
              0
              2
              6.3k

            • Magento SEO firm
              1akal
              1akal
              0
              2
              80

            • Webmaster Tools (Urgent)
              LynnPatchett
              LynnPatchett
              0
              2
              95

            • Magento SEO and Rankings
              newmediaguru
              newmediaguru
              0
              7
              762

            Get started with Moz Pro!

            Unlock the power of advanced SEO tools and data-driven insights.

            Start my free trial
            Products
            • Moz Pro
            • Moz Local
            • Moz API
            • Moz Data
            • STAT
            • Product Updates
            Moz Solutions
            • SMB Solutions
            • Agency Solutions
            • Enterprise Solutions
            • Digital Marketers
            Free SEO Tools
            • Domain Authority Checker
            • Link Explorer
            • Keyword Explorer
            • Competitive Research
            • Brand Authority Checker
            • Local Citation Checker
            • MozBar Extension
            • MozCast
            Resources
            • Blog
            • SEO Learning Center
            • Help Hub
            • Beginner's Guide to SEO
            • How-to Guides
            • Moz Academy
            • API Docs
            About Moz
            • About
            • Team
            • Careers
            • Contact
            Why Moz
            • Case Studies
            • Testimonials
            Get Involved
            • Become an Affiliate
            • MozCon
            • Webinars
            • Practical Marketer Series
            • MozPod
            Connect with us

            Contact the Help team

            Join our newsletter
            Moz logo
            © 2021 - 2026 SEOMoz, Inc., a Ziff Davis company. All rights reserved. Moz is a registered trademark of SEOMoz, Inc.
            • Accessibility
            • Terms of Use
            • Privacy