CVE-2022-27477: Newbee-Mall Project Newbee-Mall

Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.

Newbee-Mall v1.0.0 was discovered to contain an arbitrary file upload via the Upload function at /admin/goods/edit.

Affected products

Published 2022-04-10. Last modified 2026-06-17.