CVE-2023-39639

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
15/09/2023
Last modified:
19/09/2023

Description

LeoTheme leoblog up to v3.1.2 was discovered to contain a SQL injection vulnerability via the component LeoBlogBlog::getListBlogs.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:leotheme:leoblog:*:*:*:*:*:prestashop:*:* 3.1.2 (including)