EPSS
Percentile
19.4%
prestashop/ps_socialfollow is vulnerable to cross-site scripting (XSS). A remote attacker is able to inject and execute arbitrary Javascript in a user’s browser via the social network fields.
github.com/PrestaShop/ps_socialfollow/commit/c1768bf14c0fcf8311bea15fba4ffdda45522d6b
github.com/PrestaShop/ps_socialfollow/security/advisories/GHSA-774w-fg8p-7c8w