Unrated severityNVD Advisory· Published Oct 8, 2025· Updated Oct 8, 2025
CVE-2025-60833
CVE-2025-60833
Description
An XML External Entity (XXE) vulnerability in the /mall/wxpay/pay component of uzy-ssm-mall v1.1.0 allows attackers to execute arbitrary code via supplying crafted XML data.
Affected products
1- uzy-ssm-mall/uzy-ssm-malldescription
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.