CVE-2024-25844: Common-Services So Flexibilite
High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.
An issue was discovered in Common-Services "So Flexibilite" (soflexibilite) module for PrestaShop before version 4.1.26, allows remote attackers to escalate privileges and obtain sensitive information via debug file.
Affected products
- Common-Services So Flexibilite: before 4.1.14 (fixed in 4.1.14)
Published 2024-03-03. Last modified 2026-06-17.