CVE-2025-28410 | RuoYi 4.8.0 cancelAuthUserAll improper authorization (EUVD-2025-10359)
A vulnerability classified as critical has been found in RuoYi 4.8.0. Affected is the function cancelAuthUserAll. The manipulation leads to improper authorization.
This vulnerability is traded as CVE-2025-28410. It is possible to launch the attack remotely. There is no exploit available.