Description
In PrestaShop before version 1.7.6.5, there is a reflected XSS while running the security compromised page. It allows anyone to execute arbitrary action. The problem is patched in the 1.7.6.5.
Remediation
References
Related Vulnerabilities
WordPress Plugin Contact Form DB Cross-Site Request Forgery (2.8.31)
WordPress Plugin YITH Desktop Notifications for WooCommerce Security Bypass (1.2.7)
WebLogic Deserialization of Untrusted Data Vulnerability (CVE-2019-17267)
WordPress Plugin Slider by 10Web-Responsive Image Slider SQL Injection (1.2.35)