CVE-2023-4531: Mestav E-Commerce Software

Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mestav Software E-commerce Software allows SQL Injection. This issue affects E-commerce Software: before 20230901 .

Affected products

  • Mestav E-Commerce Software: before 20230901 (fixed in 20230901)

Published 2023-09-05. Last modified 2026-06-17.