Medium severity6.1NVD Advisory· Published Dec 17, 2021· Updated Jun 17, 2026
CVE-2021-43678
CVE-2021-43678
Description
Wechat-php-sdk v1.10.2 is affected by a Cross Site Scripting (XSS) vulnerability in Wechat.php.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
gaoming13/wechat-php-sdkPackagist | <= 1.10.2 | — |
Affected products
3- cpe:2.3:a:wechat-php-sdk_project:wechat-php-sdk:1.10.2:*:*:*:*:*:*:*
- Wechat-php-sdk/Wechat-php-sdkdescription
Patches
Vulnerability mechanics
References
3- github.com/gaoming13/wechat-php-sdk/issues/30nvdExploitThird Party AdvisoryWEB
- github.com/advisories/GHSA-rwqq-p4p9-5wpqghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2021-43678ghsaADVISORY
News mentions
0No linked articles in our index yet.