Product
guchengwuyue yshopmall
4 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-2146
CVE-2025-15496
CVE-2025-25426
CVE-2024-50648
<= 1.9.1
A security flaw has been discovered in guchengwuyue yshopmall up to 1.9.1. This affects the function updateAvatar of the file /api
<= 1.9.1
A vulnerability was determined in guchengwuyue yshopmall up to 1.9.1. Affected is the function getPage of the file /api/jobs. This
<= 1.9.0
yshopmall <=v1.9.0 is vulnerable to SQL Injection in the image listing interface.
all versions
yshopmall V1.0 has an arbitrary file upload vulnerability, which can enable RCE or even take over the server when improperly confi