CVE-2026-108691 | gz-yami mall4j up to 4.0 cleanExpiryProdList improper authorization
A vulnerability classified as problematic was found in gz-yami mall4j up to 4.0. Affected by this issue is the function cleanExpiryProdList of the file /p/shopCart/cleanExpiryProdList. The manipulation results in improper authorization.
This vulnerability is reported as CVE-2026-108691. The attack can be launched remotely. No exploit exists.VulDB Recent EntriesRead More