CVE-2020-5277
EUVD-2020-2647425.03.2020, 19:15
PrestaShop module ps_facetedsearch versions before 3.5.0 has a reflected XSS with `url_name` parameter. The problem is fixed in 3.5.0
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| prestashop | faceted_search_module | 1.0.0 < 𝑥 < 3.5.0 |
𝑥
= Vulnerable software versions
References