CVE-2025-28409 | RuoYi 4.8.0 /add/ add parentId permission (EUVD-2025-10358)
A vulnerability was found in RuoYi 4.8.0. It has been rated as critical. This issue affects the function Add of the file /add/. The manipulation of the argument parentId leads to permission issues.
The identification of this vulnerability is CVE-2025-28409. The attack may be initiated remotely. There is no exploit available.