PrestaShop is an open source e-commerce web application. Versions prior to 1.7.8.10, 8.0.5, and 8.1.1 are vulnerable to cross-site scripting through the `isCleanHTML` method. Versions 1.7.8.10, 8.0.5, and 8.1.1 contain a patch. There are no known workarounds.
2023-08-07T21:15:10.480
2024-11-21T08:15:36.447
Modified
CVSSv3.1: 8.3 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | prestashop | prestashop | < 1.7.8.10 | Yes |
Application | prestashop | prestashop | < 8.0.5 | Yes |
Application | prestashop | prestashop | 8.1.0 | Yes |