prestashop_checkout vulnerabilities
CVEs whose affected-version data names the prestashop_checkout package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
3 CVEsRSS
CVE-2025-61924Low· 3.8PrestaShop Checkout is the PrestaShop official payment module in partnership with PayPal
PrestaShop Checkout is the PrestaShop official payment module in partnership with PayPal. In versions prior to 4.4.1 and 5.0.5, the Target PayPal merchant account hijacking from backoffice due to wrong usage of the PHP array_search(). Th…
CVE-2025-61923Medium· 4.1PrestaShop Checkout is the PrestaShop official payment module in partnership with PayPal
PrestaShop Checkout is the PrestaShop official payment module in partnership with PayPal. In versions prior to 4.4.1 and 5.0.5, the backoffice is missing validation on input resulting in a directory traversal and arbitrary file disclosur…
CVE-2025-61922Critical· 9.1PoCPrestaShop Checkout is the PrestaShop official payment module in partnership with PayPal
PrestaShop Checkout is the PrestaShop official payment module in partnership with PayPal. Starting in version 1.3.0 and prior to versions 4.4.1 and 5.0.5, missing validation on the Express Checkout feature allows silent login, enabling a…