Wstmart maintains a web-based platform where vulnerability exposure concentrates on application-layer input handling and request validation, characterized by cross-site scripting and cross-site request forgery weaknesses. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Wstmart over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-19138HIGH WSTMart 2.0.7 has CSRF via the index.php/admin/staffs/add.html URI. | Nov 9, 2018 | 8.8 | 38 | NO | YES |
CVE-2018-20367MEDIUM The "mall some commodity details: commodity consultation" component in WSTMart 2.0.8_181212 has stored XSS via the consultContent parameter, as demonstrated by the index.php/home/g | Dec 22, 2018 | 6.1 | 21 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Wstmart.
Media articles that mention a CVE ID that affects a product developed by Wstmart — matched by CVE ID, not by vendor name.