A cross-site scripting (XSS) vulnerability in Smart Search & Filter Shopify and BigCommerce apps allows a remote attacker to execute arbitrary JavaScript in the web browser of a user, by including a malicious payload into several filter parameter
| Software | From | Fixed in |
|---|---|---|
| mezereon / smart_search_and_filter | 1.0 | 1.0.x |