VYPR
Vendor

Xpert Idea

Products
1
CVEs
2
Across products
2
Status
Private

Products

1

Recent CVEs

2
  • CVE-2023-27847CriMar 27, 2023
    risk 0.64cvss 9.8epss 0.05

    SQL injection vulnerability found in PrestaShop xipblog v.2.0.1 and before allow a remote attacker to gain privileges via the xipcategoryclass and xippostsclass components.

  • CVE-2026-38725MedAug 28, 2026
    risk 0.35cvss 5.4epss 0.00

    xipblog module v2.0.1 and before for PrestaShop allows unauthenticated remote attackers to inject arbitrary JavaScript via the name and content parameters in ajax.php. The input is stored in the database without HTML sanitization and rendered in Smarty templates without output…