Emerging Threat: (CVE-2026-54159) PrestaShop Remote Code Execution via ps_facetedsearch Object Injection
A PHP object injection flaw in PrestaShop’s ps_facetedsearch module lets an unauthenticated attacker smuggle a malicious object through a slider filter and achieve remote code execution on the storefront.
Read more about Emerging Threat: (CVE-2026-54159) PrestaShop Remote Code Execution via ps_facetedsearch Object Injection