CVE-2023-43835: Superstorefinder Super Store Finder
High severity, CVSS 8.8. EPSS: 1.7% chance of exploitation in the next 30 days.
Super Store Finder 3.7 and below is vulnerable to authenticated Arbitrary PHP Code Injection that could lead to Remote Code Execution when settings overwrite config.inc.php content.
Affected products
- Superstorefinder Super Store Finder: up to and including 3.7
Published 2023-10-02. Last modified 2026-06-17.