Minimum safe version
4.0.3
Update to 4.0.3 or later to address 2 fixable vulnerabilities
Express Shop < 4.0.3 - CSRF Bypass
Express Shop <= 4.0.2 - Cross-Site Request Forgery