Vulnerabilities
Vulnerable Software
Ghostxbh:  >> Uzy-Ssm-Mall  >> 1.1.0  Security Vulnerabilities
A fastjson deserialization vulnerability in uzy-ssm-mall v1.1.0 allows attackers to execute arbitrary code via supplying a crafted input.
CVSS Score
6.5
EPSS Score
0.001
Published
2025-10-08
An XML External Entity (XXE) vulnerability in the /mall/wxpay/pay component of uzy-ssm-mall v1.1.0 allows attackers to execute arbitrary code via supplying crafted XML data.
CVSS Score
6.5
EPSS Score
0.001
Published
2025-10-08


Contact Us

Shodan ® - All rights reserved