Themevolty Theme Volty Cms Blog vulnerabilities
2 known vulnerabilities affecting themevolty/theme_volty_cms_blog.
Total CVEs
2
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL2
Vulnerabilities
Page 1 of 1
CVE-2023-39650P2CRITICALCVSS 9.8PoCfixed in 4.0.12023-08-28
CVE-2023-39650 [CRITICAL] CWE-89 CVE-2023-39650: Theme Volty CMS Blog up to version v4.0.1 was discovered to contain a SQL injection vulnerability vi
Theme Volty CMS Blog up to version v4.0.1 was discovered to contain a SQL injection vulnerability via the id parameter at /tvcmsblog/single.
nvd
CVE-2023-27846P3CRITICALCVSS 9.8≤ 4.0.82023-10-31
CVE-2023-27846 [CRITICAL] CWE-89 CVE-2023-27846: SQL injection vulnerability found in PrestaShop themevolty v.4.0.8 and before allow a remote attacke
SQL injection vulnerability found in PrestaShop themevolty v.4.0.8 and before allow a remote attacker to gain privileges via the tvcmsblog, tvcmsvideotab, tvcmswishlist, tvcmsbrandlist, tvcmscategorychainslider, tvcmscategoryproduct, tvcmscategoryslider, tvcmspaymenticon, tvcmstestimonial components.
nvd