← Back

Idnovate

idnovate

2 CVEs • 2 products

Products (2)

Click to collapse
Toggle

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Idnovate
1Superuser
Nov 21, 2024
Oct 31, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
An issue in the component SuperUserSetuserModuleFrontController:init() of idnovate superuser before v2.4.2 allows attackers to bypass authentication via a crafted HTTP call.
1Idnovate
1Popup Module (on Entering, Exit Popup, Add Product) And Newsletter
Feb 10, 2025
Apr 12, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Prestashop advancedpopupcreator v1.1.21 to v1.1.24 was discovered to contain a SQL injection vulnerability via the component AdvancedPopup::getPopups().