Access Control Issue in RuoYi v4.8.2 - YangZongZhuan Vulnerability
CVE-2025-70985
9.1CRITICAL
What is CVE-2025-70985?
RuoYi v4.8.2 suffers from an incorrect access control issue in its update function, which enables unauthorized attackers to modify data beyond their permitted scope. This vulnerability poses a significant security risk, potentially allowing malicious actors to manipulate sensitive information without proper authentication or access rights.
