Medium severity6.1NVD Advisory· Published Jun 22, 2021· Updated Jun 17, 2026
CVE-2021-20734
CVE-2021-20734
Description
Cross-site scripting vulnerability in Welcart e-Commerce versions prior to 2.2.4 allows remote attackers to inject arbitrary script or HTML via unspecified vectors.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:welcart:welcart_e-commerce:1.5.2:*:*:*:*:wordpress:*:*+ 1 more
- cpe:2.3:a:welcart:welcart_e-commerce:1.5.2:*:*:*:*:wordpress:*:*
- (no CPE)range: <2.2.4
- Range: versions prior to 2.2.4
Patches
Vulnerability mechanics
References
2- jvn.jp/en/jp/JVN70566757/index.htmlnvdThird Party Advisory
- www.welcart.com/archives/14039.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.