Cross Site Scripting Vulnerability in So Flexibilite for PrestaShop
CVE-2024-25841
Currently unrated
What is CVE-2024-25841?
The 'So Flexibilite' module for PrestaShop versions earlier than 4.1.26 contains a vulnerability that allows authenticated users to inject arbitrary JavaScript code. This Cross Site Scripting (XSS) issue could potentially enable attackers to manipulate user sessions or redirect users to malicious websites, posing a serious risk to both the integrity of data and the security of the affected online store.
References
Timeline
Vulnerability published
Vulnerability Reserved