CVE-2026-102363 | gz-yami mall4j up to 4.0 DeliveryController A08_delivery_check_anonymous.py checkDelivery order_number missing authentication

SecurityVulns

A vulnerability has been found in gz-yami mall4j up to 4.0 and classified as problematic. Affected by this issue is the function checkDelivery of the file A08_delivery_check_anonymous.py of the component DeliveryController. Performing a manipulation of the argument order_number results in missing authentication.

This vulnerability is known as CVE-2026-102363. Remote exploitation of the attack is possible. No exploit is available.VulDB Recent EntriesRead More