AdvancedpluginsCVEs & Vulnerabilities
2 CVEs affecting Advancedplugins products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
2 CVEs→ All vendors
Most Affected Products
ultimateimagetool 2
CVE-2024-28390CRITICAL
An issue in Advanced Plugins ultimateimagetool module for PrestaShop before v.2.2.01, allows a remote attacker to escalate privileges and obtain sensitive information via Improper Access Control.
14 Mar 2024
9.8
CVSS
CVE-2023-30200HIGH
In the module “Image: WebP, Compress, Zoom, Lazy load, Alt & More” (ultimateimagetool) in versions up to 2.1.02 from Advanced Plugins for PrestaShop, a guest can download personal informations without restriction by performing a path traversal attack.
20 Jul 2023
7.5
CVSS
← PrevPage 1 / 1Next →