Hello Chris,
Thank you for the screenshots. We set up a WordPress site with your checkout workflow (guest checkout, email confirmation, the same steps) and found three problems in the WordPress part of HikaShop that the previous patches did not cover:
- With a workflow of several steps, the "Next" button displayed the first step again without any message, even when the guest information and the address were filled properly. That's the checkout not moving on.
- When a step is refused, the page displaying the error had its javascript broken. That's why, on your second screenshot, "Guest" is selected on the left while both the registration and the login forms are displayed on the right.
- Clicking on "Next" without filling the login form ended on a PHP error.
These are fixed on our side and are included in the package currently available on our website so you can update to it to get them.
However, we could not reproduce the security token error itself on our test sites, including with a guest checkout, so we don't know yet why your site refuses the token. To help us find it, could you tell us:
- the list of the plugins active on your WordPress site, and whether a cache plugin, a server cache or a CDN like Cloudflare is used,
- whether the error appears on the very first click on "Next" after opening the checkout page, or only after the page stayed open for a while,
- whether you are logged in the WordPress backend in the same browser while testing.
If you can, a temporary backend access to the site through our contact form, with a link to this thread, would let us check it directly.
www.hikashop.com/support/contact-us.html