Vulnerabilities > Myprestamodules > Exportproducts > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-11-17 CVE-2023-45387 SQL Injection vulnerability in Myprestamodules Exportproducts 4.1.1/5.0.0
In the module "Product Catalog (CSV, Excel, XML) Export PRO" (exportproducts) in versions up to 5.0.0 from MyPrestaModules for PrestaShop, a guest can perform SQL injection via `exportProduct::_addDataToDb().`
network
low complexity
myprestamodules CWE-89
critical
9.8