Race Condition Vulnerability in macrozheng mall by macrozheng
CVE-2026-82364

2.3LOW

Key Information:

Vendor

Macrozheng

Status
Vendor
CVE Published:
29 August 2026

What is CVE-2026-82364?

A security flaw has been identified in macrozheng mall, which can affect its order submission feature. The vulnerability allows a race condition to occur in the /order/submit function, potentially enabling attackers to initiate remote exploits. The nature of the vulnerability makes the attack complex and challenging to execute. Interestingly, the vendor has removed the related issue from GitHub without providing an explanation, raising concerns about transparency in handling this critical security matter.

Affected Version(s)

mall 1.0.0

mall 1.0.1

mall 1.0.2

References

CVSS V4

Score:
2.3
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

peanutbutter (VulDB User)
VulDB CNA Team
.