High severity7.5OSV Advisory· Published Oct 17, 2018· Updated Jun 17, 2026
CVE-2018-18434
CVE-2018-18434
Description
An issue was discovered in litemall 0.9.0. Arbitrary file download is possible via ../ directory traversal in linlinjava/litemall/wx/web/WxStorageController.java in the litemall-wx-api component.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3v0.1.0, v0.2.0, v0.3.0, …+ 2 more
- (no CPE)range: v0.1.0, v0.2.0, v0.3.0, …
- cpe:2.3:a:linlinjava:litemall:0.9.0:*:*:*:*:*:*:*
- (no CPE)range: =0.9.0
Patches
Vulnerability mechanics
References
2- github.com/linlinjava/litemall/commit/49ab94d0052672d4fb642505d44b94a18abea332nvdPatchThird Party Advisory
- github.com/linlinjava/litemall/issues/76nvdThird Party Advisory
News mentions
0No linked articles in our index yet.