High severity8.8NVD Advisory· Published Nov 15, 2023· Updated Jun 17, 2026
CVE-2023-40923
CVE-2023-40923
Description
MyPrestaModules ordersexport before v5.0 was discovered to contain multiple SQL injection vulnerabilities at send.php via the key and save_setting parameters.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:a:myprestamodules:orders_\(csv\,_excel\)_export_pro:*:*:*:*:*:prestashop:*:*Range: <5.0
- MyPrestaModules/ordersexportdescription
- Range: <5.0
- Range: <5.0
Patches
Vulnerability mechanics
References
1- security.friendsofpresta.org/modules/2023/11/09/ordersexport.htmlnvdPatchThird Party Advisory
News mentions
0No linked articles in our index yet.