Skip to content

Known CVE

PrestaShop xipblog - SQL Injection

In the blog module (xipblog), an anonymous user can perform SQL injection. Even though the module has been patched in version 2.0.1, the version number was not incremented at the time.

CVE-2023-27847

Critical2023CVSS 9.8CWE-89

time-based-sqli · cve2023 · prestashop · sqli · xipblog · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website