A vulnerability was found in yangzongzhuan RuoYi up to 4.8.1. Affected by this vulnerability is the function Edit of the file /system/notice/edit. The manipulation of the argument noticeTitle/noticeContent leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
References
Configurations
No configuration.
History
12 Aug 2025, 14:15
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/yangzongzhuan/RuoYi/issues/298 - | |
Summary |
|
11 Aug 2025, 13:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-08-11 13:15
Updated : 2025-08-12 14:15
NVD link : CVE-2025-8847
Mitre link : CVE-2025-8847
CVE.ORG link : CVE-2025-8847
JSON object : View
Products Affected
No product.