CVE-2026-82423 | macrozheng mall up to 1.0.3 Payment Status Endpoint /order/paySuccess orderId behavioral workflow (Issue 985)

SecurityVulns

A vulnerability identified as problematic has been detected in macrozheng mall up to 1.0.3. The affected element is an unknown function of the file /order/paySuccess of the component Payment Status Endpoint. The manipulation of the argument orderId leads to enforcement of behavioral workflow.

This vulnerability is uniquely identified as CVE-2026-82423. The attack is possible to be carried out remotely. Moreover, an exploit is present.

The vendor deleted the GitHub issue for this vulnerability without any explanation.VulDB Recent EntriesRead More