VDB
Sign up
MEDIUM6.7

GHSA-75p5-jwx4-qw9h

PrestaShop boolean SQL injection

Quick fix

GHSA-75p5-jwx4-qw9h — prestashop/prestashop: upgrade to the fixed version with the command below.

composer require prestashop/prestashop:^8.1.1

Details

### Impact SQL injection possible in product search field, in BO's product page

### Patches 8.1.1

### Found by Aleksey Solovev (Positive Technologies)

### Workarounds none

### References none

Are you affected?

Enter the version of the package you're using.

Affected packages

Packagist/prestashop/prestashop
Introduced in: 0Fixed in: 8.1.1
Fixcomposer require prestashop/prestashop:^8.1.1

References