CVE-2023-27843: Ask For A Quote Project Ask For A Quote

Critical severity, CVSS 9.8. EPSS: 1.2% chance of exploitation in the next 30 days.

SQL injection vulnerability found in PrestaShop askforaquote v.5.4.2 and before allow a remote attacker to gain privileges via the QuotesProduct::deleteProduct component.

Affected products

Published 2023-04-26. Last modified 2026-06-17.