Vulnerabilidades en guchengwuyue
11 resultadosAnálisis Vexday
A empresa guchengwuyue apresenta uma pegada mínima de vulnerabilidades na base Vexday com apenas 2 CVEs registrados, nenhum dos quais em ataque ativo ou crítico. As vulnerabilidades relacionam-se predominantemente a controle de acesso (CWE-284), com nenhuma publicação nos últimos 90 dias, indicando um perfil de risco baixo e estável.
CVE-2025-15496MEDIUMguchengwuyue yshopmall jobs getPage sql injectionEPSS 0.4%CVE-2026-92456HIGHyshop-crm through 2.1.3 Missing Authorization via CRM Customer Rule-Configuration EndpointsEPSS 0.4%CVE-2026-92463HIGHyshop-crm through 2.1.3 Missing Authorization via Disabled Annotation on System User ListingEPSS 0.3%CVE-2026-92460HIGHyshop-crm through 2.1.3 Missing Authorization via CRM Operation-Log ListingEPSS 0.3%CVE-2026-92459HIGHyshop-crm through 2.1.3 Missing Authorization via CRM Lead-Claim EndpointEPSS 0.3%CVE-2026-92462HIGHyshop-crm through 2.1.3 Missing Authorization via CrmFlowController deleteFlowStepEPSS 0.3%CVE-2026-92457HIGHyshop-crm through 2.1.3 Missing Authorization via CrmInvoiceController issueInvoiceEPSS 0.3%CVE-2026-2146MEDIUMguchengwuyue yshopmall co.yixiang.utils.FileUtil updateAvatar unrestricted uploadEPSS 0.3%CVE-2026-92461MEDIUMyshop-crm through 2.1.3 Missing Authorization via CRM Approval-Chain EndpointEPSS 0.3%CVE-2026-92455MEDIUMyshop-crm through 2.1.3 Missing Authorization via CRM Customer Messaging EndpointsEPSS 0.3%CVE-2026-92458MEDIUMyshop-crm through 2.1.3 Missing Authorization via StoreProductController onSaleEPSS 0.3%