Innovadeluxe maintains a small portfolio of e-commerce and ordering management products, including its manufacturer search and quick-order applications, centered on web-based transaction and product-catalog functionality. The observed vulnerability pattern reflects the data-handling demands of these applications, with SQL injection emerging as a durable concern across the product line. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Innovadeluxe over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-46350CRITICAL SQL injection vulnerability in InnovaDeluxe "Manufacturer or supplier alphabetical search" (idxrmanufacturer) module for PrestaShop versions 2.0.4 and before, allows remote attacke | Feb 9, 2024 | 9.8 | 24 | NO | NO |
CVE-2023-46989HIGH SQL Injection vulnerability in the Innovadeluxe Quick Order module for PrestaShop before v.1.4.0, allows local attackers to execute arbitrary code via the getProducts() function in | Dec 28, 2023 | 7.8 | 22 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Innovadeluxe.
Media articles that mention a CVE ID that affects a product developed by Innovadeluxe — matched by CVE ID, not by vendor name.