CVE-2025-28399 - Exrick Xmall
Critical 9.8
An issue in Erick xmall v.1.1 and before allows a remote attacker to escalate privileges via the updateAddress method of the Address Controller class.
Affected software
Exrick Xmall
An issue in Erick xmall v.1.1 and before allows a remote attacker to escalate privileges via the updateAddress method of the Address Controller class.
Exrick Xmall
CVE alerts, vulnerability alerts, latest versions and news matched to your software stack.