{"id":"CVE-2020-5273","aliases":["GHSA-cx2r-mf6x-55rx"],"url":"https://o3.security/vulnerability/CVE-2020-5273","summary":"Stored XSS with custom URLs in PrestaShop module ps_linklist","details":"In PrestaShop module ps_linklist versions before 3.1.0, there is a stored XSS when using custom URLs. The problem is fixed in version 3.1.0","published":"2020-04-16T22:15:13.777Z","modified":"2026-07-09T01:31:21.275373Z","cvss":{"score":5.4,"severity":"MEDIUM","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"},"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"Packagist","name":"prestashop/ps_linklist","fixedVersion":"3.1.0"}],"fix":{"url":"https://github.com/PrestaShop/ps_linklist/commit/83e6e0bdda2287f4d6e64127cb90c41d26b5ad82","label":"PrestaShop/ps_linklist@83e6e0b"},"references":[{"type":"ADVISORY","url":"https://github.com/PrestaShop/ps_linklist/security/advisories/GHSA-cx2r-mf6x-55rx"},{"type":"FIX","url":"https://github.com/PrestaShop/ps_linklist/commit/83e6e0bdda2287f4d6e64127cb90c41d26b5ad82"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-07-09T01:31:21.275373Z"}}