VYPR

supernewsletter

by Prestashop

CVEs (2)

  • CVE-2024-33275CriApr 30, 2024
    risk 0.64cvss 9.8epss 0.00

    SQL injection vulnerability in Webbax supernewsletter v.1.4.21 and before allows a remote attacker to escalate privileges via the Super Newsletter module in the product_search.php components.

  • CVE-2024-25839Mar 3, 2024
    risk 0.00cvss epss 0.00

    An issue was discovered in Webbax "Super Newsletter" (supernewsletter) module for PrestaShop versions 1.4.21 and before, allows local attackers to escalate privileges and obtain sensitive information.