Vulnerabilities > Mypresta > Product Extra Tabs PRO

DATE CVE VULNERABILITY TITLE RISK
2023-10-17 CVE-2023-45386 SQL Injection vulnerability in Mypresta Product Extra Tabs PRO
In the module extratabspro before version 2.2.8 from MyPresta.eu for PrestaShop, a guest can perform SQL injection via `extratabspro::searchcategory()`, `extratabspro::searchproduct()` and `extratabspro::searchmanufacturer().'
network
low complexity
mypresta CWE-89
critical
9.8