Critical severity9.8NVD Advisory· Published Apr 24, 2023· Updated Jun 17, 2026
CVE-2023-26865
CVE-2023-26865
Description
SQL injection vulnerability found in PrestaShop bdroppy v.2.2.12 and before allowing a remote attacker to gain privileges via the BdroppyCronModuleFrontController::importProducts component.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:brandsdistribution:bdroppy:*:*:*:*:*:prestashop:*:*Range: <2.2.28
(expand)+ 1 more
- (no CPE)
- (no CPE)range: <=2.2.12
Patches
Vulnerability mechanics
References
2- friends-of-presta.github.io/security-advisories/modules/2023/04/20/bdroppy.htmlnvdExploitMitigationThird Party Advisory
- bdroppy.com/dropshipping-apps-integrations-bdroppy/nvdProduct
News mentions
0No linked articles in our index yet.