CRITICAL9.8CVE-2023-30151A SQL injection vulnerability in the Boxtal (envoimoinscher) module for PrestaShop, after version 3.1.10, allows remote attackers to execut…
from 0, < 3.1.10
CRITICAL9.8CVE-2023-31672In the PrestaShop < 2.4.3 module "Length, weight or volume sell" (ailinear) there is a SQL injection vulnerability.
from 0, < 2.4.3
HIGH8.1CVE-2024-41651An issue in Prestashop v.8.1.7 and before allows a remote attacker to execute arbitrary code via the module upgrade functionality.
from 0, < 9.0.0
MEDIUM6.5A PHAR deserialization vulnerability in the _getHeaders function of PrestaShop v8.2.0 allows attackers to execute arbitrary code via a craf…
>= 8.2.0, < 9.0.0
MEDIUM6.5A PHAR deserialization vulnerability in the component /themes/import of PrestaShop v8.2.0 allows attackers to execute arbitrary code via a…
>= 8.2.0, < 9.0.0
MEDIUM5.3In prestashop 8.1.4, a NULL pointer dereference was identified in the math_round function within Tools.php.