VYPR
Unrated severityNVD Advisory· Published Oct 8, 2025· Updated Oct 8, 2025

CVE-2025-60833

CVE-2025-60833

Description

An XML External Entity (XXE) vulnerability in the /mall/wxpay/pay component of uzy-ssm-mall v1.1.0 allows attackers to execute arbitrary code via supplying crafted XML data.

Affected products

1
  • uzy-ssm-mall/uzy-ssm-malldescription

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.