Critical severity9.8NVD Advisory· Published Oct 31, 2023· Updated Jun 17, 2026
CVE-2023-27846
CVE-2023-27846
Description
SQL injection vulnerability found in PrestaShop themevolty v.4.0.8 and before allow a remote attacker to gain privileges via the tvcmsblog, tvcmsvideotab, tvcmswishlist, tvcmsbrandlist, tvcmscategorychainslider, tvcmscategoryproduct, tvcmscategoryslider, tvcmspaymenticon, tvcmstestimonial components.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:themevolty:theme_volty_cms_blog:*:*:*:*:*:prestashop:*:*Range: <=4.0.8
- PrestaShop/themevoltydescription
- Range: <=4.0.8
Patches
Vulnerability mechanics
References
1- security.friendsofpresta.org/modules/2023/10/25/tvcmsblog.htmlnvdPatchThird Party Advisory
News mentions
0No linked articles in our index yet.