PrestaShop Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2023-39524 - Vulnerability Database

PrestaShop Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2023-39524

Critical
Reference: CVE-2023-39524
Title: PrestaShop Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Overview:

PrestaShop is an open source e-commerce web application. Prior to version 8.1.1 SQL injection possible in the product search field in BO39s product page. Version 8.1.1 contains a patch for this issue. There are no known workarounds.