Reflected XSS in PrestaShop Product Comments
CVE-2020-26225
8.7HIGH
What is CVE-2020-26225?
In PrestaShop Product Comments before version 4.2.0, an attacker could inject malicious web code into the users' web browsers by creating a malicious link. The problem was introduced in version 4.0.0 and is fixed in 4.2.0
Affected Version(s)
productcomments >= 4.0.0, < 4.2.0