CVE Vulnerabilities

CVE-2025-56396

Published: Nov 26, 2025 | Modified: Dec 04, 2025
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

An issue was discovered in Ruoyi 4.8.1 allowing attackers to gain escalated privileges due to the owning department having higher rights than the active user.

Affected Software

NameVendorStart VersionEnd Version
RuoyiRuoyi4.8.1 (including)4.8.1 (including)

References