Ruoyi

Ruoyi

59 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.37%
  • Veröffentlicht 26.09.2025 01:15:36
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A security flaw has been discovered in yangzongzhuan RuoYi up to 4.8.1. This vulnerability affects unknown code of the file /system/role/authUser/selectAll. Performing manipulation of the argument userIds results in improper authorization. The attack...

Exploit
  • EPSS 0.37%
  • Veröffentlicht 15.09.2025 19:15:34
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A security flaw has been discovered in yangzongzhuan RuoYi up to 4.8.1. This impacts the function filterKeyword of the file /com/ruoyi/common/utils/sql/SqlUtil.java of the component Blacklist Handler. The manipulation results in sql injection. The at...

Exploit
  • EPSS 0.34%
  • Veröffentlicht 13.09.2025 19:32:06
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A flaw has been found in yangzongzhuan RuoYi up to 4.8.1. Affected by this vulnerability is an unknown functionality of the file /system/role/authUser/cancelAll of the component Role Handler. Executing manipulation of the argument roleId/userIds can ...

Exploit
  • EPSS 0.3%
  • Veröffentlicht 11.08.2025 13:15:39
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A vulnerability was found in yangzongzhuan RuoYi up to 4.8.1. Affected by this vulnerability is the function Edit of the file /system/notice/edit. The manipulation of the argument noticeTitle/noticeContent leads to cross site scripting. The attack ca...

Exploit
  • EPSS 0.42%
  • Veröffentlicht 20.07.2025 20:32:05
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A vulnerability was found in yangzongzhuan RuoYi up to 4.8.1. It has been classified as problematic. Affected is an unknown function of the file ruoyi-admin/src/main/resources/application-druid.yml of the component Druid. The manipulation leads to us...

Exploit
  • EPSS 0.3%
  • Veröffentlicht 20.07.2025 19:32:05
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A vulnerability was found in yangzongzhuan RuoYi up to 4.8.1 and classified as critical. This issue affects the function uploadFile of the file ruoyi-admin/src/main/java/com/ruoyi/web/controller/common/CommonController.java. The manipulation of the a...

Exploit
  • EPSS 0.24%
  • Veröffentlicht 20.07.2025 16:32:05
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A vulnerability classified as problematic was found in yangzongzhuan RuoYi up to 4.8.1. Affected by this vulnerability is an unknown functionality of the component Image Source Handler. The manipulation leads to improper restriction of rendered ui la...

Exploit
  • EPSS 0.26%
  • Veröffentlicht 20.07.2025 16:15:24
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A vulnerability classified as problematic has been found in yangzongzhuan RuoYi up to 4.8.1. Affected is the function addSave of the file com/ruoyi/web/controller/system/SysNoticeController.java. The manipulation leads to cross site scripting. It is ...

Exploit
  • EPSS 0.73%
  • Veröffentlicht 20.07.2025 15:32:04
  • Zuletzt bearbeitet 11.09.2025 15:28:17

A vulnerability was found in yangzongzhuan RuoYi up to 4.8.1. It has been rated as problematic. This issue affects some unknown processing of the file /swagger-ui/index.html of the component Swagger UI. The manipulation of the argument configUrl lead...

Exploit
  • EPSS 0.37%
  • Veröffentlicht 17.05.2025 06:15:19
  • Zuletzt bearbeitet 10.10.2025 18:01:20

A vulnerability classified as problematic has been found in y_project RuoYi 4.8.0. Affected is an unknown function of the file /monitor/online/batchForceLogout of the component Offline Logout. The manipulation of the argument ids leads to improper au...