VYPR

uzy-ssm-mall

by Uzy Ssm Mall

CVEs (2)

  • CVE-2025-60834MedOct 8, 2025
    risk 0.42cvss 6.5epss 0.00

    A fastjson deserialization vulnerability in uzy-ssm-mall v1.1.0 allows attackers to execute arbitrary code via supplying a crafted input.

  • CVE-2025-60833MedOct 8, 2025
    risk 0.42cvss 6.5epss 0.00

    An XML External Entity (XXE) vulnerability in the /mall/wxpay/pay component of uzy-ssm-mall v1.1.0 allows attackers to execute arbitrary code via supplying crafted XML data.