PT-2026-49298 · Undefined · Undefined
Published
2026-06-15
·
Updated
2026-06-15
·
CVE-2026-38812
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
RuoYi v4.8.2 is vulnerable to SQL Injection via the /tool/gen/createTable endpoint. The issue affects the code generation module and may allow an authenticated attacker with administrative privileges to access sensitive database information.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Undefined