Description
In PrestaShop from version 1.5.3.0 and before version 1.7.6.6, there is a stored XSS when using the name of a quick access item. The problem is fixed in 1.7.6.6.
Remediation
References
Related Vulnerabilities
PHP Other Vulnerability (CVE-2005-3883)
WordPress Plugin YITH WooCommerce Ajax Search Unspecified Vulnerability (1.2.7)
EspoCRM Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2022-38843)
SharePoint Improper Authorization Vulnerability (CVE-2025-49701)
WebLogic Deserialization of Untrusted Data Vulnerability (CVE-2015-4852)