CVE-2025-70985
EUVD-2026-423623.01.2026, 19:15
Incorrect access control in the update function of RuoYi v4.8.2 allows unauthorized attackers to arbitrarily modify data outside of their scope.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ruoyi | ruoyi | 4.8.1 |
| ruoyi | ruoyi | 4.8.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration