Medium severity6.5NVD Advisory· Published Jan 9, 2026· Updated Jun 17, 2026
CVE-2025-51626
CVE-2025-51626
Description
SQL injection vulnerability in pss.sale.com 1.0 via the id parameter to the userfiles/php/cancel_order.php endpoint.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3(expand)+ 1 more
- (no CPE)
- (no CPE)range: = 1.0
- cpe:2.3:a:xiaoliuchu:pss.sale.com:1.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- gist.github.com/hnking-star/17d4c9c990c2324ef109fecb4fc4630cnvdThird Party Advisory
- gitee.com/XiaoLiuChu/pss.sale.com/tree/masternvdProduct
News mentions
0No linked articles in our index yet.