In the module 'Theme Volty CMS Blog' (tvcmsblog) up to versions 4.0.1 from Theme Volty for PrestaShop, a guest can perform SQL injection in affected versions.
id: CVE-2023-39650
info:
name: PrestaShop Theme Volty CMS Blog - SQL Injection
author: masterch
...