CVE-2025-11594

A vulnerability has been found in ywxbear PHP-Bookstore-Website-Example and PHP Basic BookStore Website up to 0e0b9f542f7a2d90a8d7f8c83caca69294e234e4. This issue affects some unknown processing of the file /index.php of the component Quantity Handler. Such manipulation leads to improper validation of specified quantity in input. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. This product operates on a rolling release basis, ensuring continuous delivery. Consequently, there are no version details for either affected or updated releases.
Configurations

No configuration.

History

14 Oct 2025, 15:16

Type Values Removed Values Added
References () https://github.com/Lianhaorui/Report/blob/main/Payment%20Logic%20Vulnerability.docx - () https://github.com/Lianhaorui/Report/blob/main/Payment%20Logic%20Vulnerability.docx -

11 Oct 2025, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-10-11 09:15

Updated : 2025-10-14 19:36


NVD link : CVE-2025-11594

Mitre link : CVE-2025-11594

CVE.ORG link : CVE-2025-11594


JSON object : View

Products Affected

No product.

CWE
CWE-703

Improper Check or Handling of Exceptional Conditions

CWE-1284

Improper Validation of Specified Quantity in Input