Vulnerabilities > Lineagrafica

DATE CVE VULNERABILITY TITLE RISK
2024-02-07 CVE-2024-24311 Path Traversal vulnerability in Lineagrafica Multilingual and Multistore Sitemap PRO
Path Traversal vulnerability in Linea Grafica "Multilingual and Multistore Sitemap Pro - SEO" (lgsitemaps) module for PrestaShop before version 1.6.6, a guest can download personal information without restriction.
network
low complexity
lineagrafica CWE-22
7.5
2023-07-06 CVE-2023-30195 Missing Authorization vulnerability in Lineagrafica Lgdetailedorder
In the module "Detailed Order" (lgdetailedorder) in version up to 1.1.20 from Linea Grafica for PrestaShop, a guest can download personal informations without restriction formatted in json.
network
low complexity
lineagrafica CWE-862
7.5
2022-11-10 CVE-2022-44727 SQL Injection vulnerability in Lineagrafica EU Cookie LAW Gdpr
The EU Cookie Law GDPR (Banner + Blocker) module before 2.1.3 for PrestaShop allows SQL Injection via a cookie ( lgcookieslaw or __lglaw ).
network
low complexity
lineagrafica CWE-89
critical
9.1