CVE-2023-43835: Superstorefinder Super Store Finder

High severity, CVSS 8.8. EPSS: 1.7% chance of exploitation in the next 30 days.

Super Store Finder 3.7 and below is vulnerable to authenticated Arbitrary PHP Code Injection that could lead to Remote Code Execution when settings overwrite config.inc.php content.

Affected products

Published 2023-10-02. Last modified 2026-06-17.