VYPR

linjiashop

by linjiashop

CVEs (1)

  • CVE-2025-52101CriJul 1, 2025
    risk 0.64cvss 9.8epss 0.00

    linjiashop <=0.9 is vulnerable to Incorrect Access Control. When using the default-generated JWT authentication, attackers can bypass the authentication and retrieve the encrypted "password" and "salt". The password can then be obtained through brute-force cracking.