Medium severity5.4NVD Advisory· Published Sep 20, 2021· Updated Jun 17, 2026
CVE-2021-24597
CVE-2021-24597
Description
The You Shang WordPress plugin through 1.0.1 does not escape its qrcode links settings, which result into Stored Cross-Site Scripting issues in frontend posts and the plugins settings page depending on the payload used
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:you-shang_project:you-shang:*:*:*:*:*:wordpress:*:*Range: <=1.0.1
- WordPress/You Shangdescription
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/37554d0e-68e2-4df9-8c59-65f5cd7f184envdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.