---
id: CVE-2026-90569
title: A flaw has been found in linlinjava litemall 1.5.0/1.6.0/1.7.0/1.8.0
summary: >-
  A flaw has been found in linlinjava litemall 1.5.0/1.6.0/1.7.0/1.8.0. This
  vulnerability affects the function AdminTopicController.validate of the file
  litemall-vue/src/views/items/topic/index.vue of the component Admin Topic
  Handler. Th…
severity: low
cvss: 2.4
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N'
cwe:
  - CWE-79
  - CWE-94
vendor: linlinjava
product: litemall
affected:
  - litemall 1.5.0
  - litemall 1.6.0
  - litemall 1.7.0
  - litemall 1.8.0
published: '2026-09-13'
updated: '2026-09-14'
sourceUpdated: '2026-09-14T20:56:48.220'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-90569'
references:
  - url: 'https://gitee.com/linlinjava/litemall/'
    label: cna@vuldb.com
  - url: 'https://gitee.com/linlinjava/litemall/issues/IK5SUU'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/cve/CVE-2026-90569'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/submit/912673'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/403154'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/403154/cti'
    label: cna@vuldb.com
tags:
  - nvd
  - cve.org
ssvc:
  exploitation: none
  automatable: 'no'
  technicalImpact: partial
  timestamp: '2026-09-14T17:17:44.445826Z'
ingestedAt: '2026-09-14T15:23:07.469Z'
epss: 0.00368
epssPercentile: 0.28003
---

## Overview

A flaw has been found in linlinjava litemall 1.5.0/1.6.0/1.7.0/1.8.0. This vulnerability affects the function AdminTopicController.validate of the file litemall-vue/src/views/items/topic/index.vue of the component Admin Topic Handler. This manipulation causes cross site scripting. The attack may be initiated remotely. The project was informed of the problem early through an issue report but has not responded yet.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
