CVE-2023-30282: Prestashop Scexportcustomers

High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.

PrestaShop scexportcustomers <= 3.6.1 is vulnerable to Incorrect Access Control. Due to a lack of permissions' control, a guest can access exports from the module which can lead to leak of personal information from customer table.

Affected products

  • Prestashop Scexportcustomers: up to and including 3.6.1

Published 2023-05-04. Last modified 2026-06-17.