Vulnerability CVE-2023-39648


Published: 2023-10-03   Modified: 2023-10-04

Description:
Improper neutralization of SQL parameter in Theme Volty CMS Testimonial module for PrestaShop. In the module ??Theme Volty CMS Testimonial? (tvcmstestimonial) up to version 4.0.1 from Theme Volty for PrestaShop, a guest can perform SQL injection in affected versions.

 References:
https://security.friendsofpresta.org/modules/2023/09/26/tvcmstestimonial.html

Copyright 2026, cxsecurity.com

 

Back to Top