CVE-2022-27477: Newbee-Mall Project Newbee-Mall
Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.
Newbee-Mall v1.0.0 was discovered to contain an arbitrary file upload via the Upload function at /admin/goods/edit.
Affected products
- Newbee-Mall Project Newbee-Mall: version 1.0 only
Published 2022-04-10. Last modified 2026-06-17.