CVE-2025-7902 | yangzongzhuan RuoYi up to 4.8.1 SysNoticeController.java addSave cross site scripting (Issue 294)

SecurityVulns

A vulnerability classified as problematic has been found in yangzongzhuan RuoYi up to 4.8.1. Affected is the function addSave of the file com/ruoyi/web/controller/system/SysNoticeController.java. The manipulation leads to cross site scripting.

This vulnerability is traded as CVE-2025-7902. It is possible to launch the attack remotely. Furthermore, there is an exploit available.VulDB Recent EntriesRead More