Unrated severityNVD Advisory· Published Apr 16, 2020· Updated Aug 4, 2024
Stored XSS on back office edit page
CVE-2020-5266
Description
In the ps_link module for PrestaShop before version 3.1.0, there is a stored XSS when you create or edit a link list block with the title field. The problem is fixed in 3.1.0
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2<3.1.0+ 1 more
- (no CPE)range: <3.1.0
- (no CPE)range: < 3.1.0
Patches
Vulnerability mechanics
Generated on May 9, 2026. Inputs: CWE entries + fix-commit diffs from this CVE's patches. Citations validated against bundle.
References
2- github.com/PrestaShop/ps_linklist/commit/b90005c2cfed949ab564228b277a728e0a62a876mitrex_refsource_MISC
- github.com/PrestaShop/ps_linklist/security/advisories/GHSA-vr7g-vqp5-966jmitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.