Webbax
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in any Webbax product.
RSS Feeds for Webbax security vulnerabilities
Create a CVE RSS feed including security vulnerabilities found in Webbax products with stack.watch. Just hit watch, then grab your custom RSS feed url.
Products by Webbax Sorted by Most Security Vulnerabilities since 2018
By the Year
In 2026 there have been 0 vulnerabilities in Webbax. Webbax did not have any published security vulnerabilities last year.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 0 | 0.00 |
| 2025 | 0 | 0.00 |
| 2024 | 1 | 0.00 |
| 2023 | 6 | 7.45 |
It may take a day or so for new Webbax vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Webbax Security Vulnerabilities
| CVE | Date | Vulnerability | Products |
|---|---|---|---|
| CVE-2024-25839 | Mar 03, 2024 |
Local Priv Escalation in Webbax SuperNewsletter v1.4.21-An issue was discovered in Webbax "Super Newsletter" (supernewsletter) module for PrestaShop versions 1.4.21 and before, allows local attackers to escalate privileges and obtain sensitive information. |
|
| CVE-2023-31671 | Jun 14, 2023 |
PrestaShop Postfinance SQLi via postProcess() v<=17.1.13PrestaShop postfinance <= 17.1.13 is vulnerable to SQL Injection via PostfinanceValidationModuleFrontController::postProcess(). |
|
| CVE-2023-30198 | Jun 12, 2023 |
PrestaShop winbizpayment <=1.0.2 Incorrect Access Control via download.phpPrestashop winbizpayment <= 1.0.2 is vulnerable to Incorrect Access Control via modules/winbizpayment/downloads/download.php. |
|
| CVE-2023-3031 | Jun 02, 2023 |
Prestashop King-Avis Path Traversal CVE-2023-3031 17.3.15Improper Limitation of a Pathname leads to a Path Traversal vulnerability in the module King-Avis for Prestashop, allowing a user knowing the download token to read arbitrary local files.This issue affects King-Avis: before 17.3.15. |
|
| CVE-2023-30197 | May 31, 2023 |
PrestaShop Module: My inventory <=1.6.6 Path Traversal Guest DownloadIncorrect Access Control in the module "My inventory" (myinventory) <= 1.6.6 from Webbax for PrestaShop, allows a guest to download personal information without restriction by performing a path traversal attack. |
|
| CVE-2023-30196 | May 30, 2023 |
Prior 1.10.4 SalesBooster Module: ACL via downloads/download.phpPrestashop salesbooster <= 1.10.4 is vulnerable to Incorrect Access Control via modules/salesbooster/downloads/download.php. |
|
| CVE-2023-30199 | May 19, 2023 |
Prestashop customexporter <=1.7.20 Incorrect Access Control via download.phpPrestashop customexporter <= 1.7.20 is vulnerable to Incorrect Access Control via modules/customexporter/downloads/download.php. |
|