CVE-2024-26129: Prestashop
Medium severity, CVSS 5.3. EPSS: 0.6% chance of exploitation in the next 30 days.
PrestaShop is an open-source e-commerce platform. Starting in version 8.1.0 and prior to version 8.1.4, PrestaShop is vulnerable to path disclosure in a JavaScript variable. A patch is available in version 8.1.4.
Affected products
- Prestashop Prestashop: from 8.1.0, before 8.1.4 (fixed in 8.1.4)
Published 2024-02-19. Last modified 2026-06-17.