VYPR
Critical severity9.8NVD Advisory· Published Aug 29, 2022· Updated Jun 17, 2026

CVE-2022-22897

CVE-2022-22897

Description

A SQL injection vulnerability in the product_all_one_img and image_product parameters of the ApolloTheme AP PageBuilder component through 2.4.4 for PrestaShop allows unauthenticated attackers to exfiltrate database data.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • ApolloTheme/AP PageBuilder componentdescription
  • ApolloTheme/Ap Pagebuilderllm-fuzzy2 versions
    <=2.4.4+ 1 more
    • (no CPE)range: <=2.4.4
    • cpe:2.3:a:apollotheme:ap_pagebuilder:*:*:*:*:*:prestashop:*:*range: <=2.4.5

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.