Shopwind v3.4.3 was discovered to contain a reflected cross-site scripting (XSS) vulnerability in the component /common/library/Page.php.Referenceshttp://yii-shopwind.comhttps://github.com/shopwind/yii-shopwind/issues/1