← Back to CVE List

CVE-2020-15162

Published: 2020-09-24T23:15Z
Last Modified: 2024-11-21T05:04Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
In PrestaShop from version 1.5.0.0 and before version 1.7.6.8, users are allowed to send compromised files. These attachments allowed people to input malicious JavaScript which triggered an XSS payload. The problem is fixed in version 1.7.6.8. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt