Youlaitech Youlai-Mall Improper Access Control Vulnerability in Member ID Management

Vulnerability

A vulnerability exists in Youlaitech Youlai-Mall versions 1.0.0 and 2.0.0, specifically within the 'getMemberById' function of the '/mall-ums/app-api/v1/members/' endpoint. This vulnerability allows unauthorized users to access other users' WeChat openid by manipulating the 'memberId' parameter, due to a lack of proper access controls. The issue can be exploited remotely, and has been publicly disclosed. The vendor was notified prior to this disclosure but did not respond.

Impact

Exploitation of this vulnerability leads to unauthorized access to sensitive user information, specifically WeChat openid, which can be used for account enumeration and profiling. This access control failure violates data ownership principles and can result in privacy regulation noncompliance.

Reproduction

To reproduce this vulnerability, log in to the application to obtain a valid authorization token. Then, send a GET request to the '/mall-ums/app-api/v1/members/{memberId}/openid' endpoint, replacing '{memberId}' with the target user's member ID. The response will include the WeChat openid of the user associated with the member ID.

Added: Dec 5, 2025, 12:17 AM
Updated: Dec 5, 2025, 12:17 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
6.6
remediation
0.0
relevance
1.2
threat
6.4
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.