CVE-2023-39639 | LeoTheme LeoBlog up to 3.1.2 on PrestaShop getListBlogs sql injection (EUVD-2023-43346)
A vulnerability, which was classified as critical, was found in LeoTheme LeoBlog up to 3.1.2 on PrestaShop. Affected is the function LeoBlogBlog::getListBlogs. The manipulation results in sql injection.
This vulnerability is identified as CVE-2023-39639. The attack can only be performed from the local network. There is not any exploit available.