Vulnerabilities > Woocommerce > Persian Woocommerce > 1.3

DATE CVE VULNERABILITY TITLE RISK
2022-03-14 CVE-2021-24940 Cross-site Scripting vulnerability in Woocommerce Persian-Woocommerce
The Persian Woocommerce WordPress plugin through 5.8.0 does not escape the s parameter before outputting it back in an attribute in the admin dashboard, which could lead to a Reflected Cross-Site Scripting issue
4.3