CVE-2024-50652: Geeeeeeeek Java Shop

Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.

A file upload vulnerability in java_shop 1.0 allows attackers to upload arbitrary files by modifying the avatar function.

Affected products

Published 2024-11-15. Last modified 2026-06-17.