CVE-2023-39527

All FrameworksPrestaShopCWE-79CVE-2023-39527

CVE-2023-39527

State: PUBLISHED · Published: 2023-08-07 · Updated: 2024-10-03 · Assigner: GitHub_M
Description
PrestaShop is an open source e-commerce web application. Versions prior to 1.7.8.10, 8.0.5, and 8.1.1 are vulnerable to cross-site scripting through the `isCleanHTML` method. Versions 1.7.8.10, 8.0.5, and 8.1.1 contain a patch. There are no known workarounds.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2023/39xxx/CVE-2023-39527.json