N/A Unfixed Closed
2026-03-20≤ 5.1.2
REST API TO MiniProgram <= 5.1.2 - Authenticated (Subscriber+) Insecure Direct Object Reference via 'userid' REST API Parameter
REST API TO MiniProgram <= 5.1.2 - Authenticated (Subscriber+) Insecure Direct Object Reference via 'userid' REST API Parameter
CVE-2025-28886
CVE-2024-8485
CVE-2024-8484
CVE-2023-0551