There is a cross site scripting vulnerability on CmsWing 1.3.7. This vulnerability (stored XSS) is triggered when visitors access the article module.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2020-24993.json"