CVE-2025-7901
4.3MEDIUMA vulnerability was found in yangzongzhuan RuoYi up to 4.8.1. It has been rated as problematic. This issue affects some unknown processing of the file /swagger-ui/index.html of the component Swagger U
Publicado: 7/20/2025Atualizado: 9/11/2025
Descrição
A vulnerability was found in yangzongzhuan RuoYi up to 4.8.1. It has been rated as problematic. This issue affects some unknown processing of the file /swagger-ui/index.html of the component Swagger UI. The manipulation of the argument configUrl leads to cross site scripting. The attack may be initiated remotely.
Análise IADesenvolvido por IA
Produtos Afetados
ruoyiruoyi
Referências
- https://github.com/yangzongzhuan/RuoYi/issues/293ExploitIssue TrackingVendor Advisory
- https://vuldb.com/?ctiid.317015Permissions RequiredVDB Entry
- https://vuldb.com/?id.317015Third Party AdvisoryVDB Entry
- https://vuldb.com/?submit.618353Third Party AdvisoryVDB Entry