Vulnerabilities > Posthemes

DATE CVE VULNERABILITY TITLE RISK
2023-10-19 CVE-2023-45379 SQL Injection vulnerability in Posthemes Posrotatorimg 1.1
In the module "Rotator Img" (posrotatorimg) in versions at least up to 1.1 from PosThemes for PrestaShop, a guest can perform SQL injection.
network
low complexity
posthemes CWE-89
critical
9.8
2023-05-16 CVE-2023-30189 SQL Injection vulnerability in Posthemes Posstaticblocks
Prestashop posstaticblocks <= 1.0.0 is vulnerable to SQL Injection via posstaticblocks::getPosCurrentHook().
network
low complexity
posthemes CWE-89
critical
9.8