Vulnerabilities (CVE)

Filtered by vendor Ruoyi Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-49371 1 Ruoyi 1 Ruoyi 2023-12-06 N/A 9.8 CRITICAL
RuoYi up to v4.6 was discovered to contain a SQL injection vulnerability via /system/dept/edit.
CVE-2021-28411 1 Ruoyi 1 Ruoyi 2023-08-18 N/A 9.8 CRITICAL
An issue was discovered in getRememberedSerializedIdentity function in CookieRememberMeManager class in lerry903 RuoYi version 3.4.0, allows remote attackers to escalate privileges.