Skip to content

Instantly share code, notes, and snippets.

@Catherines77
Catherines77 / CVE-2025-25426.txt
Created February 28, 2025 14:20
CVE-2025-25426
[CVE ID]
CVE-2025-25426
[PRODUCT]
https://github.com/guchengwuyue/yshopmall
[VERSION]
V1.9
[PROBLEM TYPE]
SQL Injection
[DESCRIPTION]
There is a SQL injection vulnerability in the backend of the yshopmall shopping mall system.
@Catherines77
Catherines77 / CVE-2024-57498.txt
Created February 2, 2025 10:14
CVE-2024-57498
[CVE ID]
CVE-2024-57498
[PRODUCT]
https://github.com/saysky/ForestBlog
[VERSION]
lastest
[PROBLEM TYPE]
Stored XSS
[DESCRIPTION]
Stored XSS exists in the administrator backend /admin/article/editSubmit interface