A vulnerability was identified in YunaiV ruoyi-vue-pro up...
Moderate severity
Unreviewed
Published
Sep 26, 2025
to the GitHub Advisory Database
•
Updated Sep 26, 2025
Description
Published by the National Vulnerability Database
Sep 26, 2025
Published to the GitHub Advisory Database
Sep 26, 2025
Last updated
Sep 26, 2025
A vulnerability was identified in YunaiV ruoyi-vue-pro up to 2025.09. This affects an unknown part of the file /crm/business/transfer. Such manipulation leads to improper authorization. It is possible to launch the attack remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.
References