First, check if the official Faceted Search module is installed
The fastest way to know whether this specific advisory applies to your shop is to check the PrestaShop back office.
Go to and search for Faceted Search.
If Faceted Search does not appear, there is nothing to update, disable, uninstall, or delete from the PrestaShop back office for this specific advisory.
If Faceted Search does appear, continue to the scenario cards below.
Choose your path
Start with the simple Module Manager check, then choose the path below. This keeps the process practical and avoids unnecessary technical work.
PrestaHeroes can handle the security review for you
You do not need to guess whether this is a simple module update or a possible compromise. PrestaHeroes can help you safely review the shop, create a staging copy for testing, and perform forensic checks before changes are made to production.
- Staging copy for safe testing We can create or use a staging copy of your shop so update/removal testing does not put the live store at unnecessary risk.
- Module state review We check whether Faceted Search is installed, enabled, disabled, outdated, or replaced by another filtering module.
- Backup-first cleanup We preserve the module folder before uninstalling or deleting it, so useful evidence is not destroyed.
- File and folder forensics We inspect suspicious PHP files, recent modified dates, and common hiding places outside the Faceted Search module.
- Access-log analysis We review logs for direct module access, suspicious payloads, bot probes, and possible active exploitation attempts.
- Practical remediation plan We help separate normal module maintenance from a real compromise concern and outline next steps.
This is especially useful if the vulnerable module was active on a production shop, if the shop has unusual files, or if you simply want confidence before moving on.
The email button opens a new message with the subject prefilled so we can route the request correctly.
Admin scenarios and exact actions
Choose the scenario that matches what you found in Modules > Module Manager.
Scenario 1: Faceted Search does not appear in Module Manager
Go to and search for Faceted Search. If the module still does not appear, there is nothing to update, disable, uninstall, or delete from the PrestaShop back office for this specific advisory.
You can stop here for this advisory.
Scenario 2: Faceted Search is installed and enabled
If the version is 3.0.0 through 4.0.3, update to 4.0.4 or later. If the update does not appear in the back office, download the official release and install it manually.
Scenario 3: Faceted Search is installed but disabled
Back up /modules/ps_facetedsearch/ first, then remove the module from Modules > Module Manager if it is unused. Select the delete-files option in the uninstall popup if shown.
Scenario 4: Your shop uses Amazzing Filter or another third-party filter module
The advisory does not state that Amazzing Filter is affected. However, a shop can use Amazzing Filter while native Faceted Search remains installed in the background. Search for the native module and remove it if unused.
Scenario 5: Faceted Search is installed but your shop does not use it
Back up /modules/ps_facetedsearch/ first, then remove the module from Modules > Module Manager if it is unused. Select the delete-files option in the uninstall popup if shown.
Scenario 6: You cannot update immediately
Disable only as a temporary emergency step. Then schedule the proper update or backup-first removal.
Scenario 7: You are not sure whether Faceted Search is being used
Open the module configuration and review filter templates. Also test category pages on the front office to see whether native filters appear.
Before removing Faceted Search: make a backup
Before you uninstall or delete the Faceted Search module from the PrestaShop back office, make a backup of the module folder.
Not comfortable touching module files?
PrestaHeroes can create or use a staging copy, back up the module folder, and remove the module safely so production changes are tested first.
/modules/ps_facetedsearch/
Zip or download this folder before uninstalling or deleting the module. If there was a compromise, this backup may help a reviewer understand what happened.
What is the possible negative impact of this issue?
This issue is serious because it can potentially allow an attacker to execute code on the server through the vulnerable ps_facetedsearch module.
The concern is that a public visitor, bot, or scanner may be able to send a specially crafted request to the shop without needing customer login access or back-office access.
- Malicious PHP files may be added to the shop.
- Hidden access files, often called webshells, may remain on the server.
- Theme, module, or checkout-related files may be modified.
- Spam pages, redirects, hidden links, or SEO spam may be added.
- The shop may experience malware warnings, traffic spikes, or hosting alerts.
- An attacker may return later if a malicious file remains after the module is updated.
How to tell if your shop may have been compromised
There is no single back-office button that can prove a shop is clean. But there are practical checks a PrestaShop admin or hosting provider can perform.
/modules/ps_facetedsearch/
Look for unexpected .php files, random-looking names, unusual subfolders, and recently modified files that do not match a clean module copy.
Use ChatGPT to review your access logs
Large access logs are difficult to read manually. If your hosting control panel allows you to download the access log, you can upload that file into ChatGPT and ask for a first-pass security analysis.
Want us to review the logs?
Download recent access logs from hosting and email us. We can identify suspicious IPs, direct module access, bot probes, and possible exploitation attempts.
What to do if you find suspicious files
If you find unexpected PHP files, unusual modified dates, or suspicious access-log activity, do not treat this as a simple module update.
Found something suspicious?
Stop before deleting. Preserve the evidence, take screenshots, and let us help determine whether this is normal module code or a compromise indicator.
- Back up the suspicious folder before deleting anything.
- Take screenshots or notes of filenames and modified dates.
- Download recent access logs from your hosting control panel.
- Review common locations: /modules/, /themes/, /img/, /upload/, /download/, /override/.
- Change back-office, hosting, FTP/SFTP, database, and admin passwords if compromise is confirmed.
Recommended PrestaHeroes admin standard
For production PrestaShop shops, do not leave unused front-office modules installed.
- Search Faceted Search in Modules > Module Manager.
- If it does not appear, there is nothing to do for this specific advisory.
- If you use it, update to 4.0.4 or later.
- If you do not use it, back up /modules/ps_facetedsearch/, then uninstall/delete it and select delete-files if shown.
- Clear cache and test category pages.
- If the module was active on production, consider file and log forensics.
Share this guide in a specific language
Use these URL endings when posting this page in different language areas of the PrestaShop forum. The page will open directly on the selected language tab.