CVE Vulnerabilities

CVE-2025-56396

Published: Nov 26, 2025 | Modified: Dec 03, 2025
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

An issue was discovered in Ruoyi 4.8.1 allowing attackers to gain escalated privileges due to the owning department having higher rights than the active user.

Affected Software

Name Vendor Start Version End Version
Ruoyi Ruoyi 4.8.1 (including) 4.8.1 (including)

References