Medium severity6.1NVD Advisory· Published Sep 8, 2023· Updated Jun 17, 2026
CVE-2023-39676
CVE-2023-39676
Description
FieldPopupNewsletter Prestashop Module v1.0.0 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the callback parameter at ajax.php.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- cpe:2.3:a:fieldthemes:fieldpopupnewsletter:1.0.0:*:*:*:*:prestashop:*:*
- FieldPopupNewsletter Prestashop Module/FieldPopupNewsletter Prestashop Moduledescription
Patches
Vulnerability mechanics
References
3- blog.sorcery.ie/posts/fieldpopupnewsletter_xss/nvdExploit
- sorcery.ienvdNot Applicable
- themeforest.net/user/fieldthemesnvdProduct
News mentions
0No linked articles in our index yet.