### [CVE-2021-20734](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-20734) ![](https://img.shields.io/static/v1?label=Product&message=Welcart%20e-Commerce&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=versions%20prior%20to%202.2.4%20&color=brightgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=Cross-site%20scripting&color=brightgreen) ### Description Cross-site scripting vulnerability in Welcart e-Commerce versions prior to 2.2.4 allows remote attackers to inject arbitrary script or HTML via unspecified vectors. ### POC #### Reference No PoCs from references. #### Github - https://github.com/20142995/nuclei-templates - https://github.com/wild0ni0n/wild0ni0n