| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-25858 | macrozheng mall <= 1.0.3 Unauthenticated Password Reset via OTP Disclosure | macrozheng | mall | Critical | 9.1 | 2026-02-07 21:45:41 | Deep Dive |
| CVE-2025-15118 | macrozheng mall Member Endpoint update improper authorization | macrozheng | mall | Medium | 4.3 | 2025-12-28 03:02:06 | Deep Dive |
| CVE-2025-14016 | macrozheng mall-swarm delete improper authorization | macrozheng | mall-swarm | Medium | 5.4 | 2025-12-04 18:32:08 | Deep Dive |
| CVE-2025-13443 | macrozheng mall delete access control | macrozheng | mall | Medium | 5.4 | 2025-11-20 02:02:06 | Deep Dive |
| CVE-2025-13118 | macrozheng mall-swarm/mall paySuccess improper authorization | macrozheng | mall-swarm | Medium | 6.3 | 2025-11-13 15:02:05 | Deep Dive |
| CVE-2025-13117 | macrozheng mall-swarm/mall cancelOrder improper authorization | macrozheng | mall-swarm | Medium | 5.4 | 2025-11-13 14:32:06 | Deep Dive |
| CVE-2025-13116 | macrozheng mall-swarm/mall cancelUserOrder improper authorization | macrozheng | mall-swarm | Medium | 5.4 | 2025-11-13 14:02:06 | Deep Dive |
| CVE-2025-13115 | macrozheng mall-swarm/mall Order Details detail improper authorization | macrozheng | mall-swarm | Medium | 4.3 | 2025-11-13 13:32:09 | Deep Dive |
| CVE-2025-13114 | macrozheng mall-swarm attr updateAttr improper authorization | macrozheng | mall-swarm | Medium | 6.3 | 2025-11-13 13:32:07 | Deep Dive |
| CVE-2025-9836 | macrozheng mall paySuccess authorization | macrozheng | mall | Medium | 4.3 | 2025-09-02 22:02:07 | Deep Dive |
| CVE-2025-9835 | macrozheng mall cancelUserOrder cancelOrder authorization | macrozheng | mall | Medium | 4.3 | 2025-09-02 21:32:06 | Deep Dive |
| CVE-2025-9514 | macrozheng mall Registration weak password | macrozheng | mall | Low | 3.7 | 2025-08-27 06:02:06 | Deep Dive |
| CVE-2025-8755 | macrozheng mall com.macro.mall.portal.controller UmsMemberController.java detail authorization | macrozheng | mall | Medium | 5.3 | 2025-08-09 14:02:06 | Deep Dive |
| CVE-2025-8750 | macrozheng mall Add Product Page upload cross site scripting | macrozheng | mall | Low | 2.4 | 2025-08-09 07:02:06 | Deep Dive |
| CVE-2025-8742 | macrozheng mall Admin Login excessive authentication | macrozheng | mall | Low | 3.7 | 2025-08-08 22:02:06 | Deep Dive |
| CVE-2025-8741 | macrozheng mall login cleartext transmission | macrozheng | mall | Low | 3.7 | 2025-08-08 21:32:06 | Deep Dive |
| CVE-2025-8191 | macrozheng mall Swagger UI index.html cross site scripting | macrozheng | mall | Low | 3.5 | 2025-07-26 13:32:05 | Deep Dive |
| CVE-2024-11619 | macrozheng mall JWT Token default key | macrozheng | mall | Medium | 5.0 | 2024-11-22 21:00:11 | Deep Dive |