CVE-2023-26912: S-Mall-Ssm Project S-Mall-Ssm
Medium severity, CVSS 4.8. EPSS: 0.4% chance of exploitation in the next 30 days.
Cross site scripting (XSS) vulnerability in xenv S-mall-ssm thru commit 3d9e77f7d80289a30f67aaba1ae73e375d33ef71 on Feb 17, 2020, allows local attackers to execute arbitrary code via the evaluate button.
Affected products
- S-Mall-Ssm Project S-Mall-Ssm: before 2020-02-17 (fixed in 2020-02-17)
Published 2023-03-15. Last modified 2026-06-17.