Critical severity9.8NVD Advisory· Published Dec 14, 2023· Updated Jun 17, 2026
CVE-2023-46348
CVE-2023-46348
Description
SQL njection vulnerability in SunnyToo sturls before version 1.1.13, allows attackers to escalate privileges and obtain sensitive information via StUrls::hookActionDispatcher and StUrls::getInstanceId methods.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- SunnyToo/sturlsdescription
Patches
Vulnerability mechanics
References
1- security.friendsofpresta.org/modules/2023/12/07/sturls.htmlnvdPatchThird Party Advisory
News mentions
0No linked articles in our index yet.