Prestashop · Apaczka Plugin · CVE-2024-2759
**Name of the Vulnerable Software and Affected Versions**
Apaczka plugin for PrestaShop versions v1 through v4
**Description**
The issue is related to improper access control in the Apaczka plugin for PrestaShop, allowing unauthorized information gathering from saved templates without the need for authentication.
**Recommendations**
For Apaczka plugin for PrestaShop versions v1 through v4, consider restricting access to saved templates until a proper fix is applied.
As a temporary workaround, restrict access to the template saving functionality to minimize the risk of exploitation.
Avoid using the Apaczka plugin for PrestaShop until the issue is resolved.