PrestaShop is a fully scalable open source e-commerce solution. In PrestaShop before version 1.7.2 there is a CSV Injection vulnerability possible by using shop search keywords via the admin panel. The problem is fixed in 1.7.7.2
{
"cpe": "cpe:2.3:a:prestashop:prestashop:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "0"
},
{
"fixed": "1.7.7.2"
}
],
"source": [
"CPE_RANGE",
"REFERENCES"
]
}