CVE-2023-27033: Cdesigner Project Cdesigner
Critical severity, CVSS 9.8. EPSS: 0.9% chance of exploitation in the next 30 days.
Prestashop cdesigner v3.1.3 to v3.1.8 was discovered to contain a code injection vulnerability via the component CdesignerSaverotateModuleFrontController::initContent().
Affected products
- Cdesigner Project Cdesigner: from 3.1.3, before 3.2.2 (fixed in 3.2.2)
Published 2023-04-07. Last modified 2026-06-17.