CVE-2025-50902

C

ross Site Request Forgery (CSRF) vulnerability in old-peanut Open-Shop (aka old-peanut/wechat_applet__open_source) thru 1.0.0 allows attackers to gain sensitive information via crafted HTTP Post message.

References
Configurations

Configuration 1 (hide)

cpe:2.3:a:old-peanut:open-shop:*:*:*:*:*:*:*:*

History

09 Oct 2025, 17:23

Type Values Removed Values Added
First Time Old-peanut
Old-peanut open-shop
References () https://gitee.com/old-peanut/wechat_applet__open_source/issues/IC95QM - () https://gitee.com/old-peanut/wechat_applet__open_source/issues/IC95QM - Exploit, Third Party Advisory
CPE cpe:2.3:a:old-peanut:open-shop:*:*:*:*:*:*:*:*

22 Aug 2025, 18:09

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-20 20:15

Updated : 2025-10-09 17:23


NVD link : CVE-2025-50902

Mitre link : CVE-2025-50902

CVE.ORG link : CVE-2025-50902


JSON object : View

Products Affected
CWE
CWE-352

Cross-Site Request Forgery (CSRF)