Vulnerabilities (CVE)

Filtered by vendor Leotheme Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-30150 1 Leotheme 1 Leocustomajax 2025-01-06 N/A 9.8 CRITICAL
PrestaShop leocustomajax 1.0 and 1.0.0 are vulnerable to SQL Injection via modules/leocustomajax/leoajax.php.
CVE-2023-39639 1 Leotheme 1 Leoblog 2024-11-21 N/A 9.8 CRITICAL
LeoTheme leoblog up to v3.1.2 was discovered to contain a SQL injection vulnerability via the component LeoBlogBlog::getListBlogs.