In the ps_link module for PrestaShop before version 3.1.0, there is a stored XSS when you create or edit a link list block with the title field. The problem is fixed in 3.1.0
2020-04-16T22:15:13.713
2024-11-21T05:33:47.980
Modified
CVSSv3.1: 4.4 (MEDIUM)
AV:N/AC:M/Au:S/C:N/I:P/A:N
6.8
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | prestashop | prestashop_link | < 3.1.0 | Yes |