PrestaShop Vulnerabilities and Affected Products
Vulnerabilities associated with ps_linklist.
Products
Clear product- PrestaShop63 vulnerabilities
- productcomments3 vulnerabilities
- blockreassurance2 vulnerabilities
- fme2 vulnerabilities
- helpdesk2 vulnerabilities
- M4 PDF plugin2 vulnerabilities
- ps_facetedsearch2 vulnerabilities
- ps_linklist2 vulnerabilities
- abandoned_cart_reminder_pro1 vulnerability
- ask_for_a_quote1 vulnerability
- blockwishlist1 vulnerability
- channable1 vulnerability
- contactform1 vulnerability
- dashproducts1 vulnerability
- livechatpro1 vulnerability
- loginascustomerpro1 vulnerability
- m4_pdf1 vulnerability
- newsletter_popup_pro1 vulnerability
- poststaticfooter1 vulnerability
- ps_contactinfo1 vulnerability
- ps_emailsubscription1 vulnerability
- ps_socialfollow1 vulnerability
- quadra_informatique1 vulnerability
- scalapay1 vulnerability
- The firmware1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2020-5266MEDIUM | Stored XSS on back office edit pageIn the ps_link module for PrestaShop before version 3.1.0, there is a stored XSS when you create or edit a link list block with the title field. The problem is fixed in 3.1.0 CWE-79Apr 16, 2020 | CVSS4.4v3.1 | EPSS0.638% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2020-5273MEDIUM | Stored XSS with custom URLs in PrestaShop module ps_linklistIn PrestaShop module ps_linklist versions before 3.1.0, there is a stored XSS when using custom URLs. The problem is fixed in version 3.1.0 CWE-79Apr 16, 2020 | CVSS4.1v3.1 | EPSS0.697% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |