WordPress SagePay Server Gateway for WooCommerce before 1.0.9 is vulnerable to cross-site scripting via the includes/pages/redirect.php page parameter.
id: CVE-2018-5316
info:
name: WordPress SagePay Server Gateway for WooCommerce <1.0.9 - Cross-Sit
...