threat
engine
.sh
Back
·
··:··
Home
/
Product
/
macrozheng mall
Product
macrozheng mall
24 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2026-25858
<= 1.0.3
macrozheng mall version 1.0.3 and prior contains an authentication vulnerability in the mall-portal password reset workflow that a
9.1
CRITICAL
CVE-2025-15118
<= 1.0.3
A security vulnerability has been detected in macrozheng mall up to 1.0.3. This vulnerability affects unknown code of the file /me
4.3
MEDIUM
CVE-2025-14016
<= 1.0.3
A security vulnerability has been detected in macrozheng mall-swarm up to 1.0.3. Affected is the function delete of the file /memb
5.4
MEDIUM
CVE-2025-13443
<= 1.0.3
A vulnerability was detected in macrozheng mall up to 1.0.3. Affected by this issue is the function delete of the file /member/rea
5.4
MEDIUM
CVE-2025-13118
<= 1.0.3
A vulnerability was detected in macrozheng mall-swarm up to 1.0.3. Affected by this issue is the function paySuccess of the file /
6.3
MEDIUM
CVE-2025-13117
<= 1.0.3
A security vulnerability has been detected in macrozheng mall-swarm and mall up to 1.0.3. Affected by this vulnerability is the fu
5.4
MEDIUM
CVE-2025-13116
<= 1.0.3
A weakness has been identified in macrozheng mall-swarm and mall up to 1.0.3. Affected is the function cancelUserOrder of the file
5.4
MEDIUM
CVE-2025-13115
<= 1.0.3
A security flaw has been discovered in macrozheng mall-swarm and mall up to 1.0.3. This impacts the function detail of the file /o
4.3
MEDIUM
CVE-2025-13114
<= 1.0.3
A vulnerability was identified in macrozheng mall-swarm up to 1.0.3. This affects the function updateAttr of the file /cart/update
6.3
MEDIUM
CVE-2025-9836
<= 1.0.3
A vulnerability was found in macrozheng mall up to 1.0.3. This vulnerability affects the function paySuccess of the file /order/pa
4.3
MEDIUM
CVE-2025-9835
<= 1.0.3
A vulnerability has been found in macrozheng mall up to 1.0.3. This affects the function cancelOrder of the file /order/cancelUser
4.3
MEDIUM
CVE-2025-9514
<= 1.0.3
A vulnerability has been found in macrozheng mall up to 1.0.3. This impacts an unknown function of the component Registration. Suc
3.7
LOW
CVE-2025-8755
<= 1.0.3
A vulnerability was found in macrozheng mall up to 1.0.3 and classified as problematic. This issue affects the function detail of
5.3
MEDIUM
CVE-2025-8750
<= 1.0.3
A vulnerability has been found in macrozheng mall up to 1.0.3 and classified as problematic. Affected by this vulnerability is the
2.4
LOW
CVE-2025-8742
<= 1.0.3
A vulnerability was found in macrozheng mall 1.0.3. It has been rated as problematic. Affected by this issue is some unknown funct
3.7
LOW
CVE-2025-8741
<= 1.0.3
A vulnerability was found in macrozheng mall up to 1.0.3. It has been declared as problematic. Affected by this vulnerability is a
3.7
LOW
CVE-2025-8191
<= 1.0.3
A vulnerability, which was classified as problematic, was found in macrozheng mall up to 1.0.3. Affected is an unknown function of
3.5
LOW
CVE-2025-4119
all versions
A vulnerability classified as critical was found in Weitong Mall 1.0.0. This vulnerability affects unknown code of the file /query
5.3
MEDIUM
CVE-2025-4118
all versions
A vulnerability classified as critical has been found in Weitong Mall 1.0.0. This affects an unknown part of the file /historyList
5.3
MEDIUM
CVE-2024-57435
all versions
In macrozheng mall-tiny 1.0.1, an attacker can send null data through the resource creation interface resulting in a null pointer
6.5
MEDIUM
CVE-2024-57434
all versions
macrozheng mall-tiny 1.0.1 is vulnerable to Incorrect Access Control. The project imports users by default, and the test user is m
8.8
HIGH
CVE-2024-57433
all versions
macrozheng mall-tiny 1.0.1 is vulnerable to Incorrect Access Control via the logout function. After a user logs out, their token i
7.5
HIGH
CVE-2024-57432
all versions
macrozheng mall-tiny 1.0.1 suffers from Insecure Permissions. The application's JWT signing keys are hardcoded and do not change.
7.5
HIGH
CVE-2024-11619
<= 1.0.3
A vulnerability, which was classified as problematic, has been found in macrozheng mall up to 1.0.3. Affected by this issue is som
5.0
MEDIUM
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin