在 litemall(linlinjava 项目)1.4.0、1.5.0、1.6.0、1.7.0 和 1.8.0 版本中发现一个安全漏洞。该问题影响 文件中 函数的逻辑。 对 参数的操纵可触发跨站脚本攻击(XSS),且攻击可远程发起。项目组已通过 Issue 报告得知此问题,但尚未作出回应。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| linlinjava | litemall | 1.4.0 |
cpe:2.3:a:linlinjava:litemall:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet