Vulnerabilities > Prestashop > Prestashop > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-08-07 CVE-2023-39530 Improper Input Validation vulnerability in Prestashop
PrestaShop is an open source e-commerce web application.
network
low complexity
prestashop CWE-20
critical
9.1
2023-08-07 CVE-2023-39529 Unspecified vulnerability in Prestashop
PrestaShop is an open source e-commerce web application.
network
low complexity
prestashop
critical
9.1
2023-08-07 CVE-2023-39526 SQL Injection vulnerability in Prestashop
PrestaShop is an open source e-commerce web application.
network
low complexity
prestashop CWE-89
critical
9.8
2023-08-07 CVE-2023-39525 Path Traversal vulnerability in Prestashop
PrestaShop is an open source e-commerce web application.
network
low complexity
prestashop CWE-22
critical
9.1
2023-08-07 CVE-2023-39524 SQL Injection vulnerability in Prestashop
PrestaShop is an open source e-commerce web application.
network
low complexity
prestashop CWE-89
critical
9.8
2023-07-13 CVE-2023-30151 SQL Injection vulnerability in Prestashop
A SQL injection vulnerability in the Boxtal (envoimoinscher) module for PrestaShop, after version 3.1.10, allows remote attackers to execute arbitrary SQL commands via the `key` GET parameter.
network
low complexity
prestashop CWE-89
critical
9.8
2023-06-15 CVE-2023-31672 SQL Injection vulnerability in Prestashop
In the PrestaShop < 2.4.3 module "Length, weight or volume sell" (ailinear) there is a SQL injection vulnerability.
network
low complexity
prestashop CWE-89
critical
9.8
2023-04-25 CVE-2023-30838 Cross-site Scripting vulnerability in Prestashop
PrestaShop is an Open Source e-commerce web application.
network
low complexity
prestashop CWE-79
critical
9.9
2022-08-01 CVE-2022-31181 SQL Injection vulnerability in Prestashop
PrestaShop is an Open Source e-commerce platform.
network
low complexity
prestashop CWE-89
critical
9.8
2022-01-26 CVE-2022-21686 Code Injection vulnerability in Prestashop
PrestaShop is an Open Source e-commerce platform.
network
low complexity
prestashop CWE-94
critical
9.8