Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

3 advisories

Loading
Path disclosure in JavaScript variable Moderate
CVE-2024-26129 was published for prestashop/prestashop (Composer) Feb 21, 2024
hugo-fasone Credited to hugo-fasone and matks matks matks
PrestaShop XSS can be stored in DB from "add a message form" in order detail page (FO) Moderate
CVE-2024-21628 was published for prestashop/prestashop (Composer) Jan 3, 2024
matthieu-rolland Credited to matthieu-rolland, AureRita, boherm, matks, and nicosomb AureRita AureRita
boherm boherm matks matks nicosomb nicosomb
PrestaShop some attribute not escaped in Validate::isCleanHTML method High
CVE-2024-21627 was published for prestashop/prestashop (Composer) Jan 3, 2024
Antonio-R1 Credited to Antonio-R1, antoniospataro, matthieu-rolland, AureRita, boherm, and matks antoniospataro antoniospataro
matthieu-rolland matthieu-rolland AureRita AureRita boherm boherm matks matks
ProTip! Advisories are also available from the GraphQL API