WordPress Emag Marketplace Connector plugin 1.0 contains a reflected cross-site scripting vulnerability because the parameter "post" to /wp-content/plugins/emag-marketplace-connector/templates/order/awb-meta-box.php is not filtered correctly.
id: CVE-2017-17043
info:
name: WordPress Emag Marketplace Connector 1.0 - Cross-Site Scripting
...