GHSA-jvqx-hg2g-crvfMediumCVSS 4.3
A security vulnerability has been detected in macrozheng mall up to 1.0.3. Affected is the...
🔗 CVE IDs covered (1)
📋 Description
A security vulnerability has been detected in macrozheng mall up to 1.0.3. Affected is the function OmsCartItemServiceImpl.updateQuantity of the file /cart/update/quantity. The manipulation of the argument quantity leads to business logic errors. The attack may be initiated remotely. The vendor deleted the GitHub issue for this vulnerability without any explanation.
🔗 References (8)
- https://nvd.nist.gov/vuln/detail/CVE-2026-79406
- https://github.com/macrozheng/mall/issues/984
- https://github.com/macrozheng/mall
- https://vuldb.com/cve/CVE-2026-79406
- https://vuldb.com/submit/886961
- https://vuldb.com/vuln/394944
- https://vuldb.com/vuln/394944/cti
- https://github.com/advisories/GHSA-jvqx-hg2g-crvf