The Simple Shopping Cart plugin for WordPress suffers from a Stored Cross-Site Scripting (XSS) vulnerability due to inadequate input sanitization and output escaping in its `wpsc_display_product` shortcode. This allows contributor-level and higher authenticated users to inject harmful scripts into pages.
We use cookies to enhance your browsing experience, serve personalized ads or content, and analyze our traffic. By clicking "Accept All", you consent to our use of cookies.