Junglewise Threat Intelligence

CVE-2024-57436: RuoYi allowed unauthorized attackers to view the session ID of the admin in the system monitoring

CVE-2024-57436 · Severity: low · CVSS 3.1 · Published 2025-01-29

Technologies: com.ruoyi:ruoyi (Maven). Vendors: Maven.

Executive brief

RuoYi allowed unauthorized attackers to view the session ID of the admin in the system monitoring

Affected products

  • Maven com.ruoyi:ruoyi

Related threats