CVE-2026-92457 | guchengwuyue yshop-crm up to 2.1.3 issue CrmInvoiceController.issueInvoice authorization
A vulnerability was found in guchengwuyue yshop-crm up to 2.1.3. It has been rated as problematic. Impacted is the function CrmInvoiceController.issueInvoice of the file /admin-api/crm/invoice/issue. This manipulation causes missing authorization.
This vulnerability is registered as CVE-2026-92457. Remote exploitation of the attack is possible. No exploit is available.VulDB Recent EntriesRead More