CVE-2025-60833
EUVD-2025-3316508.10.2025, 14:15
An XML External Entity (XXE) vulnerability in the /mall/wxpay/pay component of uzy-ssm-mall v1.1.0 allows attackers to execute arbitrary code via supplying crafted XML data.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ghostxbh | uzy-ssm-mall | 1.1.0 |
𝑥
= Vulnerable software versions