Description PrestaShop 1.7.2.4 has XSS via source-code editing on the "Pages > Edit page" screen. Remediation References CVE-2018-5681 Related Vulnerabilities WordPress Plugin YOP Poll Cross-Site Scripting (6.1.4) Drupal Core 4.6.x Security Bypass (4.6.0 - 4.6.3) WordPress Plugin mklasen's Photobox Cross-Site Scripting (1.0) Moodle Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2023-28335) Drupal Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2008-3741) Severity Medium Classification CVE-2018-5681 CWE-707 CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N Tags Missing Update Known Vulnerabilities