Home

Description

Incorrect access control in the component orderService.queryObject of platform v1.0.0 allows attackers to access sensitive information via a crafted request.

PUBLISHED Reserved 2025-08-17 | Published 2025-12-04 | Updated 2025-12-05 | Assigner mitre

References

gitee.com/fuyang_lipengjun/platform

gist.github.com/xueye0629/620e4e0cc0f23c903736971e6375f00e

cve.org (CVE-2025-57213)

nvd.nist.gov (CVE-2025-57213)

Download JSON