在 mall4j 4.0 及之前版本中,系统未能对 sa-token 会话中的 字段进行有效验证,导致前台客户可以通过复用其会话令牌,冒充后台管理员用户完成身份认证。攻击者可在公开商店注册后,使用其客户会话令牌访问缺乏 权限检查的后台管理接口,包括菜单列表、文件上传和系统配置等敏感端点。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-102361 | 9.1 CRITICAL | mall4j through 4.0 Missing Authentication in Password Update Endpoint |
| CVE-2026-102365 | 6.5 MEDIUM | mall4j through 4.0 Missing Authorization in Admin User Address Endpoints |
| CVE-2026-102367 | 5.4 MEDIUM | mall4j through 4.0 Insufficient Session Expiration via Token Refresh |
| CVE-2026-102362 | 5.3 MEDIUM | mall4j through 4.0 Missing Authentication in Product Review Deletion |
| CVE-2026-102366 | 4.4 MEDIUM | mall4j through 4.0 Unrestricted File Upload in Admin File Endpoints |
| CVE-2026-102363 | 3.7 LOW | mall4j through 4.0 Unauthenticated Shipment Tracking Disclosure via Order Number |
No comments yet