+ "details": "# Impact\nMissing validation on Express Checkout feature allows silent log-in\n\n## Affected versions\n\nThe issue was introduced in PrestaShop Checkout 1.3.0 .\n\nAll versions above 1.3.0 are vulnerable except of course the patch versions published on 16/10/2025: 7.4.4.1, 8.4.4.1, 7.5.0.5, 8.5.0.5, 9.5.0.5\n\n# Patches\nThe problem has been patched in versions\n\n- v4.4.1 for PrestaShop 1.7 (build number: 7.4.4.1)\n- v4.4.1 for PrestaShop 8 (build number: 8.4.4.1)\n- v5.0.5 for PrestaShop 1.7 (build number: 7.5.0.5)\n- v5.0.5 for PrestaShop 8 (build number: 8.5.0.5)\n- v5.0.5 for PrestaShop 9 (build number: 9.5.0.5)\n\nRead our [Versioning policy](https://github.com/PrestaShopCorp/ps_checkout/wiki/Versioning) to learn more about our build numbers and versions of PrestaShop Checkout\n\n# Credits\nWe would like to thank [Léo CUNÉAZ](https://github.com/inem0o) for reporting the issue.",
0 commit comments