Skip to content
Noroxi

prestashopmodules records

5 published records for vendor prestashopmodules.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

5 records
  • In the module "Sliding cart block" (blockslidingcart) up to version 2.3.8 from PrestashopModules.eu for PrestaShop, a guest can perform SQL

    CriticalCVSS 9.8No exploitEPSS 1%

    prestashopmodules · sliding cart blockJan 19, 2024

  • SQL Injection vulnerability in Digincube mdgiftproduct before 1.4.1 allows an attacker to run arbitrary SQL commands via the MdGiftRule::add

    CriticalCVSS 9.8No exploitEPSS 1%

    Apr 29, 2024

  • In the module "JA Marketplace" (jamarketplace) up to version 9.0.1 from JA Module for PrestaShop, a guest can upload files with extensions .

    CriticalCVSS 9.8No exploitEPSS 0%

    Jun 19, 2024

  • CVE-2024-2759
    30Monitor

    Improper access control in Apaczka plugin for PrestaShop

    HighCVSS 7.5No exploitEPSS 1%

    alsendo sp. z o. o. · apaczkaApr 4, 2024

  • In the module "Theme settings" (pk_themesettings) <= 1.8.8 from Promokit.eu for PrestaShop, a guest can download all email collected while S

    HighCVSS 7.5No exploitEPSS 0%

    Jun 24, 2024