Known Vulnerabilities for RuoYi-Vue by Yangzongzhuan
Listed below are 9 of the newest known vulnerabilities associated with "RuoYi-Vue" by "Yangzongzhuan".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-57950 json | ruoyi-vue-pro through 2026.05, fixed in commit 5d1fd70 contains a broken access control vulnerability in ErpSaleOrderControll... | Not Provided | 2026-06-29 | 2026-06-29 |
| CVE-2026-57949 json | ruoyi-vue-pro through 2026.05, fixed in commit c779a47, contains a missing authorization vulnerability in the CRM module's GE... | Not Provided | 2026-06-29 | 2026-06-29 |
| CVE-2026-38812 json | RuoYi v4.8.2 is vulnerable to SQL Injection via the /tool/gen/createTable endpoint. The issue affects the code generation mod... | Not Provided | 2026-06-15 | 2026-06-16 |
| CVE-2026-37216 json | Ruoyi 4.8.2 is vulnerable to Cross Site Scripting (XSS) at the interface /system/notice/add. | Not Provided | 2026-06-15 | 2026-06-16 |
| CVE-2026-13528 json | A vulnerability was found in YunaiV/zhijiantianya ruoyi-vue-pro up to 2026.04-jdk8-SNAPSHOT. The impacted element is the func... | Not Provided | 2026-06-29 | 2026-06-29 |
| CVE-2026-9374 json | A vulnerability was found in yangzongzhuan RuoYi-Vue up to 3.9.2. Impacted is the function FileUploadUtils.upload of the file... | Not Provided | 2026-05-24 | 2026-05-26 |
| CVE-2026-7710 json | A security flaw has been discovered in YunaiV yudao-cloud up to 3.8.0. This affects the function doFilterInternal of the file... | Not Provided | 2026-05-04 | 2026-05-04 |
| CVE-2026-7679 json | A security flaw has been discovered in YunaiV yudao-cloud up to 2026.01. This impacts the function getAccessToken of the file... | Not Provided | 2026-05-03 | 2026-05-04 |
| CVE-2026-7678 json | A vulnerability was identified in YunaiV yudao-cloud up to 2026.01. This affects the function getDataBySQL of the file yudao-... | Not Provided | 2026-05-03 | 2026-05-04 |