Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-41599


Cross Site Scripting vulnerability in RuoYi v.4.7.9 and before allows a remote attacker to execute arbitrary code via the file upload method


Published

2024-07-19T20:15:09.063

Last Modified

2025-03-19T18:15:21.827

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.1 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-79
  • Type: Secondary
    CWE-79

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ruoyi ruoyi ≤ 4.7.9 Yes

References