pickmall_lilishop vulnerabilities
CVEs whose affected-version data names the pickmall_lilishop package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-105572Medium· 4.3A vulnerability has been found in PickMall Lilishop up to 4.2.4
A vulnerability has been found in PickMall Lilishop up to 4.2.4. This affects an unknown function of the file /buyer/trade/receipt of the component Buyer Invoice List. Such manipulation of the argument memberId leads to authorization byp…
▾ Sunlitvia NVD
CVE-2026-105571High· 7.3A flaw has been found in PickMall Lilishop up to 4.2.4
A flaw has been found in PickMall Lilishop up to 4.2.4. The impacted element is an unknown function of the file /buyer/passport/member/bindMobile of the component Mobile Binding. This manipulation of the argument Username causes improper…
▾ Twilightvia NVD