PrestaShop Blockwishlist
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in PrestaShop Blockwishlist.
By the Year
In 2026 there have been 1 vulnerability in PrestaShop Blockwishlist with an average score of 5.3 out of ten. Blockwishlist did not have any published security vulnerabilities last year. That is, 1 more vulnerability have already been reported in 2026 as compared to last year.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 1 | 5.30 |
| 2025 | 0 | 0.00 |
| 2024 | 0 | 0.00 |
| 2023 | 0 | 0.00 |
| 2022 | 1 | 8.80 |
It may take a day or so for new Blockwishlist vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent PrestaShop Blockwishlist Security Vulnerabilities
Ownership Validation Failure in PrestaShop blockwishlist 3.0.2
CVE-2026-92810
5.3 - Medium
- September 16, 2026
PrestaShop blockwishlist through 3.0.2 fails to validate wishlist ownership in the getUrlByIdWishListAction method, allowing authenticated customers to retrieve share tokens for any wishlist by identifier. Attackers can supply sequential wishlist identifiers to obtain valid share links and read other customers' private wishlist contents.
Insecure Direct Object Reference / IDOR
prestashop/blockwishlist is a prestashop extension which adds a block containing the customer's wishlists
CVE-2022-31101
8.8 - High
- June 27, 2022
prestashop/blockwishlist is a prestashop extension which adds a block containing the customer's wishlists. In affected versions an authenticated customer can perform SQL injection. This issue is fixed in version 2.1.1. Users are advised to upgrade. There are no known workarounds for this issue.
SQL Injection
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for PrestaShop Blockwishlist or by PrestaShop? Click the Watch button to subscribe.