Executive brief
PrestaShop XSS can be stored in DB from "add a message form" in order detail page (FO)
Affected products
- Packagist prestashop/prestashop
Junglewise Threat Intelligence
CVE-2024-21628 · Severity: low · CVSS 3.1 · Published 2024-01-03
Technologies: prestashop/prestashop (Packagist). Vendors: Packagist.
PrestaShop XSS can be stored in DB from "add a message form" in order detail page (FO)