CVE-2025-7901
4.3MEDIUMA vulnerability was found in yangzongzhuan RuoYi up to 4.8.1. It has been rated as problematic. This issue affects some unknown processing of the file /swagger-ui/index.html of the component Swagger U
게시됨: 7/20/2025업데이트됨: 9/11/2025
설명
A vulnerability was found in yangzongzhuan RuoYi up to 4.8.1. It has been rated as problematic. This issue affects some unknown processing of the file /swagger-ui/index.html of the component Swagger UI. The manipulation of the argument configUrl leads to cross site scripting. The attack may be initiated remotely.
AI 분석AI 기반
영향받는 제품
ruoyiruoyi
참조
- https://github.com/yangzongzhuan/RuoYi/issues/293ExploitIssue TrackingVendor Advisory
- https://vuldb.com/?ctiid.317015Permissions RequiredVDB Entry
- https://vuldb.com/?id.317015Third Party AdvisoryVDB Entry
- https://vuldb.com/?submit.618353Third Party AdvisoryVDB Entry