CVE-2023-30197: Webbax Myinventory

High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.

Incorrect Access Control in the module "My inventory" (myinventory) <= 1.6.6 from Webbax for PrestaShop, allows a guest to download personal information without restriction by performing a path traversal attack.

Affected products

  • Webbax Myinventory: before 1.6.7 (fixed in 1.6.7)

Published 2023-05-31. Last modified 2026-06-17.