CVE-2025-7902
20.07.2025, 16:15
A vulnerability classified as problematic has been found in yangzongzhuan RuoYi up to 4.8.1. Affected is the function addSave of the file com/ruoyi/web/controller/system/SysNoticeController.java. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Vendor | Product | Version |
---|---|---|
ruoyi | ruoyi | 𝑥 ≤ 4.8.1 |
𝑥
= Vulnerable software versions