CVE-2024-24028
EUVD-2024-2145421.03.2024, 02:52
Server Side Request Forgery (SSRF) vulnerability in Likeshop before 2.5.7 allows attackers to view sensitive information via the avatar parameter in function UserLogic::updateWechatInfo.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| likeshop | likeshop | 𝑥 < 2.5.7 |
𝑥
= Vulnerable software versions