CVE List

CVE-2025-28399

Severe 9.8

An issue in Erick xmall v.1.1 and before allows a remote attacker to escalate privileges via the updateAddress method of the Address Controller class.

Published April 15, 2025.

Affected software

Get alerts for Exrick Xmall

Reference links