Knowband develops e-commerce extension modules for platforms such as PrestaShop and Magento, with its vulnerability disclosures clustering around web-application input-handling flaws, particularly SQL injection and unrestricted file uploads. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Knowband over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-45384CRITICAL KnowBand supercheckout > 5.0.7 and < 6.0.7 is vulnerable to Unrestricted Upload of File with Dangerous Type. In the module "Module One Page Checkout, Social Login & Mailchimp" (sup | Oct 19, 2023 | 9.8 | 30 | NO | NO |
CVE-2023-44024CRITICAL SQL injection vulnerability in KnowBand Module One Page Checkout, Social Login & Mailchimp (supercheckout) v.8.0.3 and before allows a remote attacker to execute arbitrary code via | Oct 5, 2023 | 9.8 | 28 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Knowband.
Media articles that mention a CVE ID that affects a product developed by Knowband — matched by CVE ID, not by vendor name.