Privilege Escalation Vulnerability in RUoYi Version 4.8.0 by Yangzongzhuan
CVE-2025-28405
9.8CRITICAL
What is CVE-2025-28405?
A vulnerability in RUoYi version 4.8.0 enables remote attackers to escalate their privileges through the exploit of the changeStatus method, allowing unauthorized actions within the system. This flaw underscores the importance of maintaining secure coding practices and promptly applying security updates to protect against potential exploits.