CVE-2020-23768: Phpyun
High severity, CVSS 7.5. EPSS: 1% chance of exploitation in the next 30 days.
An information disclosure vulnerability was discovered in alipay_function.php in the log file of Alibaba payment interface on PHPPYUN prior to version 5.0.1. If exploited, this vulnerability will allow attackers to obtain users' personally identifiable information including e-mail address and telephone numbers.
Affected products
- Phpyun Phpyun: before 5.0.1 (fixed in 5.0.1)
Published 2021-05-21. Last modified 2026-06-17.