Vulnerabilities > Blmodules

DATE CVE VULNERABILITY TITLE RISK
2023-11-27 CVE-2023-46355 Unspecified vulnerability in Blmodules CSV Feeds PRO 2.5.2
In the module "CSV Feeds PRO" (csvfeeds) < 2.6.1 from Bl Modules for PrestaShop, a guest can download personal information without restriction.
network
low complexity
blmodules
5.3
2023-10-31 CVE-2023-46356 SQL Injection vulnerability in Blmodules CSV Feeds PRO 2.5.2
In the module "CSV Feeds PRO" (csvfeeds) before 2.6.1 from Bl Modules for PrestaShop, a guest can perform SQL injection.
network
low complexity
blmodules CWE-89
critical
9.8
2023-09-15 CVE-2023-39643 SQL Injection vulnerability in Blmodules Xmlfeeds PRO 3.8.2
Bl Modules xmlfeeds before v3.9.8 was discovered to contain a SQL injection vulnerability via the component SearchApiXml::Xmlfeeds().
network
low complexity
blmodules CWE-89
critical
9.8