CVE-2025-8222 | jerryshensjf JPACookieShop 蛋糕商城JPA版 up to 24a15c02b4f75042c9f7f615a3fed2ec1cefb999 GoodsController.java cross site scripting (EUVD-2025-22812)
A vulnerability identified as problematic has been detected in jerryshensjf JPACookieShop 蛋糕商城JPA版 up to 24a15c02b4f75042c9f7f615a3fed2ec1cefb999. This affects an unknown function of the file GoodsController.java. This manipulation causes cross site scripting.
The identification of this vulnerability is CVE-2025-8222. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available.
Multiple endpoints are affected.