ps_emailsubscription is a newsletter subscription module for the PrestaShop platform. An employee can inject javascript in the newsletter condition field that will then be executed on the front office The issue has been fixed in 2.6.1
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: GitHub_M
Published: 2021-03-31T17:35:15
Updated: 2024-08-03T18:09:16.081Z
Reserved: 2020-12-22T00:00:00
Link: CVE-2021-21418
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-03-31T18:15:14.503
Modified: 2024-11-21T05:48:19.280
Link: CVE-2021-21418
Redhat
No data.