CVE-2019-9762: Phpshe

Critical severity, CVSS 9.8. EPSS: 6% chance of exploitation in the next 30 days.

A SQL Injection was discovered in PHPSHE 1.7 in include/plugin/payment/alipay/pay.php with the parameter id. The vulnerability does not need any authentication.

Affected products

  • Phpshe Phpshe: version 1.7 only

Published 2019-03-14. Last modified 2026-06-17.