Store Opart
store-opart
7 CVEs • 6 products
Products (6)
Click to collapseToggle
Products (6)
Click to collapse
CVEs (7)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Store Opart 1Op'art Easy Redirect Nov 21, 2024 Feb 8, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 PrestaShop Op'art Easy Redirect >= 1.3.8 and <= 1.3.12 is vulnerable to SQL Injection via Oparteasyredirect::hookActionDispatcher(). |
SQL injection vulnerability in PrestaShop opartdevis v.4.5.18 thru v.4.6.12 allows a remote attacker to execute arbitrary code via a crafted script to the getModuleTranslation function. |
2Prestashop Store Opart2Op'art Limit Quantity OpartlimitquantityJun 12, 2026 Oct 31, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Prestashop opartlimitquantity 1.4.5 and before is vulnerable to SQL Injection. OpartlimitquantityAlertlimitModuleFrontController::displayAjaxPushAlertMessage()` has sensitive SQL calls that can be executed with a trivial...Show more |
2Opart Store Opart2Multi Html Block Multi Html BlockJun 12, 2026 Oct 14, 2023 N/A· v4 5.4 MEDIUM· v3 N/A· v2 Multiple Stored Cross Site Scripting (XSS) vulnerabilities in Opart opartmultihtmlblock before version 2.0.12 and Opart multihtmlblock* version 1.0.0, allows remote authenticated users to inject arbitrary web script or H...Show more |
2Opartfaq Project Store Opart2Op'art Product Faq OpartfaqJun 12, 2026 Sep 21, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 SQL injection vulnerability in updatepos.php in PrestaShop opartfaq through 1.0.3 allows remote attackers to run arbitrary SQL commands via unspedified vector. |
2Op'art Save Cart Project Store Opart2Op'art Save Cart Op'art Save CartJun 12, 2026 Sep 20, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 SQL injection vulnerability in PrestaShop opartsavecart through 2.0.7 allows remote attackers to run arbitrary SQL commands via OpartSaveCartDefaultModuleFrontController::initContent() and OpartSaveCartDefaultModuleFront...Show more |
An Insecure Direct Object Reference (IDOR) vulnerability was found in Prestashop Opart devis < 4.0.2. Unauthenticated attackers can have access to any user's invoice and delivery address by exploiting an IDOR on the deli...Show more |