CVE-2024-40553: Project Team Tmall Demo

Medium severity, CVSS 4.9. EPSS: 0.3% chance of exploitation in the next 30 days.

Tmall_demo v2024.07.03 was discovered to contain an arbitrary file upload via the component uploadUserHeadImage.

Affected products

Published 2024-07-15. Last modified 2026-06-17.