Vulnerability Database

308,377

Total vulnerabilities in the database

CVE-2024-54762

Ruoyi v.4.7.9 and before contains an authenticated SQL injection vulnerability. This is because the filterKeyword method does not completely filter SQL injection keywords, resulting in the risk of SQL injection.

  • Published: Jan 9, 2025
  • Updated: Nov 16, 2025
  • CVE: CVE-2024-54762
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 6.3
  • AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L

CWEs:

OWASP TOP 10: