prestashop/ps_checkout
Packagist3 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting prestashop/ps_checkoutpage 1 of 1
- CVE-2025-61922CRITICALCVSS 9.1EG 9.1✓ Fixed in 5.0.52025-10-16
vulnerable: v5.0.1 ... v5.0.4-beta9 (14 versions)
PrestaShop Checkout is the PrestaShop official payment module in partnership with PayPal. Starting in version 1.3.0 and prior to versions 4.4.1 and 5.0.5, missing validation on the Express Checkout feature allows silent login, enabling acc…
- CVE-2025-61923MEDIUMCVSS 4.1EG 4.1✓ Fixed in 5.0.52025-10-16
vulnerable: v5.0.1 ... v5.0.4-beta9 (14 versions)
PrestaShop Checkout is the PrestaShop official payment module in partnership with PayPal. In versions prior to 4.4.1 and 5.0.5, the backoffice is missing validation on input resulting in a directory traversal and arbitrary file disclosure.…
- CVE-2025-61924LOWCVSS 3.8EG 3.8✓ Fixed in 5.0.52025-10-16
vulnerable: v5.0.1 ... v5.0.4-beta9 (14 versions)
PrestaShop Checkout is the PrestaShop official payment module in partnership with PayPal. In versions prior to 4.4.1 and 5.0.5, the Target PayPal merchant account hijacking from backoffice due to wrong usage of the PHP array_search(). The …
Check whether prestashop/ps_checkout is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for prestashop/ps_checkout CVEs against the assets you own.
Start Free Scan →