CVE-2024-26469: Prestalife Product Designer

High severity, CVSS 8.1. EPSS: 0.3% chance of exploitation in the next 30 days.

Server-Side Request Forgery (SSRF) vulnerability in Tunis Soft "Product Designer" (productdesigner) module for PrestaShop before version 1.178.36, allows remote attackers to cause a denial of service (DoS) and escalate privileges via the url parameter in the postProcess() method.

Affected products

  • Prestalife Product Designer: before 1.178.36 (fixed in 1.178.36)

Published 2024-03-03. Last modified 2026-06-17.