Description
In PrestaShop between versions 1.5.5.0 and 1.7.6.5, there is a reflected XSS on Search page with `alias` and `search` parameters. The problem is patched in 1.7.6.5
Remediation
References
Related Vulnerabilities
Joomla Other Vulnerability (CVE-2006-1047)
WordPress Plugin Caldera Forms-More Than Contact Forms Cross-Site Scripting (1.5.4)
WordPress Plugin Popup Maker-Popup for opt-ins, lead gen, & more Cross-Site Scripting (1.6.4)
Liferay Portal Deserialization of Untrusted Data Vulnerability (CVE-2019-16891)