An issue was discovered in Ruoyi 4.8.1 allowing attackers to gain escalated privileges due to the owning department having higher rights than the active user.
References
| Link | Resource |
|---|---|
| https://gist.github.com/Han-tj/22cfd18fa9f116bb886e8e56782f6865 | Third Party Advisory |
| https://gitee.com/y_project/RuoYi/issues/ICJ865 | Exploit Issue Tracking Vendor Advisory |
Configurations
History
No history.
Information
Published : 2025-11-26 16:15
Updated : 2025-12-04 20:16
NVD link : CVE-2025-56396
Mitre link : CVE-2025-56396
CVE.ORG link : CVE-2025-56396
JSON object : View
Products Affected
ruoyi
- ruoyi
CWE
