Vulnerability CVE-2023-46348


Published: 2023-12-14

Description:
SQL njection vulnerability in SunnyToo sturls before version 1.1.13, allows attackers to escalate privileges and obtain sensitive information via StUrls::hookActionDispatcher and StUrls::getInstanceId methods.

 References:
https://security.friendsofpresta.org/modules/2023/12/07/sturls.html

Copyright 2026, cxsecurity.com

 

Back to Top