Vulnerabilities > YOU Shang Project

DATE CVE VULNERABILITY TITLE RISK
2021-09-20 CVE-2021-24597 Cross-site Scripting vulnerability in You-Shang Project You-Shang
The You Shang WordPress plugin through 1.0.1 does not escape its qrcode links settings, which result into Stored Cross-Site Scripting issues in frontend posts and the plugins settings page depending on the payload used
3.5