CVE-2025-56162 | YOSHOP 2.0 Endpoint /api/goods/listByIds getListByIds goodsIds sql injection
A vulnerability was found in YOSHOP 2.0. It has been rated as critical. The affected element is the function getListByIds of the file /api/goods/listByIds of the component Endpoint. Performing manipulation of the argument goodsIds results in sql injection.
This vulnerability is cataloged as CVE-2025-56162. It is possible to initiate the attack remotely. There is no exploit available.