Vulnerability CVE-2023-23315


Published: 2023-03-01

Description:
The PrestaShop e-commerce platform module stripejs contains a Blind SQL injection vulnerability up to version 4.5.5. The method `stripejsValidationModuleFrontController::initContent()` has sensitive SQL calls that can be executed with a trivial http call and exploited to forge a SQL injection.

 References:
http://prestashop.com

Copyright 2026, cxsecurity.com

 

Back to Top