mall4j 4.0 及之前版本在 PUT /user/updatePwd 接口中存在缺少身份验证的安全漏洞,该漏洞允许未经身份验证的攻击者重置任意前台账户的密码。攻击者可在请求体中提供目标用户名,从而在不进行任何验证的情况下覆盖密码,导致账户接管,并进一步获取订单和个人数据。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-102365 | 6.5 MEDIUM | mall4j through 4.0 Missing Authorization in Admin User Address Endpoints |
| CVE-2026-102364 | 5.4 MEDIUM | mall4j through 4.0 Improper Authentication Accepts Storefront Tokens on Admin API |
| CVE-2026-102367 | 5.4 MEDIUM | mall4j through 4.0 Insufficient Session Expiration via Token Refresh |
| CVE-2026-102362 | 5.3 MEDIUM | mall4j through 4.0 Missing Authentication in Product Review Deletion |
| CVE-2026-102366 | 4.4 MEDIUM | mall4j through 4.0 Unrestricted File Upload in Admin File Endpoints |
| CVE-2026-102363 | 3.7 LOW | mall4j through 4.0 Unauthenticated Shipment Tracking Disclosure via Order Number |
No comments yet