Medium severity4.3NVD Advisory· Published Oct 6, 2026
CVE-2026-105573
CVE-2026-105573
Description
A vulnerability was found in newbee-ltd newbee-mall up to 2.7.5. This impacts an unknown function of the file /jshERP-boot/accountHead/updateAccountHeadAndDetail of the component Shopping Cart Quantity Handler. Performing a manipulation of the argument goodsCount results in business logic errors. The attack can be initiated remotely. The exploit has been made public and could be used. The project was informed of the problem early through an issue report but has not responded yet.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <=2.7.5
Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.