Vulnerabilities (CVE)

Filtered by vendor Hipresta Subscribe
Filtered by product Carousels Pack
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-45376 1 Hipresta 1 Carousels Pack 2024-11-21 N/A 9.8 CRITICAL
In the module "Carousels Pack - Instagram, Products, Brands, Supplier" (hicarouselspack) for PrestaShop up to version 1.5.0 from HiPresta for PrestaShop, a guest can perform SQL injection via HiCpProductGetter::getViewedProduct().`