A vulnerability classified as problematic was found in y_project RuoYi up to 4.7.9. Affected by this vulnerability is the function isJsonRequest of the component Content-Type Handler. The manipulation of the argument HttpHeaders.CONTENT_TYPE leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-270343.
History

Wed, 14 May 2025 18:45:00 +0000

Type Values Removed Values Added
First Time appeared Ruoyi
Ruoyi ruoyi
CPEs cpe:2.3:a:ruoyi:ruoyi:*:*:*:*:*:*:*:*
Vendors & Products Ruoyi
Ruoyi ruoyi

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2024-07-04T19:00:08.627Z

Updated: 2024-08-01T21:41:03.826Z

Reserved: 2024-07-04T11:21:05.317Z

Link: CVE-2024-6511

cve-icon Vulnrichment

Updated: 2024-08-01T21:41:03.826Z

cve-icon NVD

Status : Analyzed

Published: 2024-07-04T19:15:11.207

Modified: 2025-05-14T18:24:38.760

Link: CVE-2024-6511

cve-icon Redhat

No data.