Lucene search

K
osvGoogleOSV:CVE-2020-26225
HistoryNov 16, 2020 - 10:15 p.m.

CVE-2020-26225

2020-11-1622:15:12
Google
osv.dev
2
prestashop
comment injection
web code

AI Score

7.2

Confidence

Low

EPSS

0.001

Percentile

29.3%

In PrestaShop Product Comments before version 4.2.0, an attacker could inject malicious web code into the users’ web browsers by creating a malicious link. The problem was introduced in version 4.0.0 and is fixed in 4.2.0

AI Score

7.2

Confidence

Low

EPSS

0.001

Percentile

29.3%

Related for OSV:CVE-2020-26225