All 3 CVE vulnerabilities found in productcomments, with AI-generated Chinese analysis, references, and POCs.
Vendor: PrestaShop
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2022-35933 | PrestaShop module Product Comments vulnerable to cross-site scripting (XSS) CWE-79 | 7.2 | - | 2022-09-02 |
| CVE-2020-26248 | Blind SQL injection during the CommentGrade process CWE-89 | 6.8 | Medium | 2020-12-03 |
| CVE-2020-26225 | Reflected XSS in PrestaShop Product Comments CWE-79 | 8.7 | High | 2020-11-16 |
All 3 known CVE vulnerabilities affecting productcomments with full Chinese analysis, references, and POCs where available.