Vulnerabilities (CVE)

Filtered by vendor Prestatoolkit Subscribe
Filtered by product Make An Offer\/offer Your Price
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-25849 1 Prestatoolkit 1 Make An Offer\/offer Your Price 2025-05-05 N/A 9.8 CRITICAL
In the module "Make an offer" (makeanoffer) <= 1.7.1 from PrestaToolKit for PrestaShop, a guest can perform SQL injection via MakeOffers::checkUserExistingOffer()` and `MakeOffers::addUserOffer()` .