Yudao Cloud Yunaiv Yudao Cloud

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Yunaiv Yudao Cloud.

By the Year

In 2026 there have been 1 vulnerability in Yunaiv Yudao Cloud with an average score of 4.7 out of ten. Last year, in 2025 Yudao Cloud had 1 security vulnerability published. If vulnerabilities keep coming in at the current rate, it appears that number of security vulnerabilities in Yudao Cloud in 2026 could surpass last years number. Last year, the average CVE base score was greater by 1.60

Year Vulnerabilities Average Score
2026 1 4.70
2025 1 6.30

It may take a day or so for new Yudao Cloud vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Yunaiv Yudao Cloud Security Vulnerabilities

YunaiV yudao-cloud 2026.03 SSRF via Admin API Endpoint
CVE-2026-9464 4.7 - Medium - May 25, 2026

A vulnerability has been found in YunaiV yudao-cloud 2026.03. This affects the function IotDataSinkHttpConfig of the file /admin-api/iot/data-sink/create of the component Admin API Endpoint. Such manipulation leads to server-side request forgery. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

SSRF

Improper Auth via contactId in yudao-cloud <=2025.09 HTTP Handler
CVE-2025-10987 6.3 - Medium - September 26, 2025

A vulnerability was determined in YunaiV yudao-cloud up to 2025.09. Affected by this issue is some unknown functionality of the file /crm/contact/transfer of the component HTTP Request Handler. This manipulation of the argument contactId causes improper authorization. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.

AuthZ

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Yunaiv Yudao Cloud or by Yunaiv? Click the Watch button to subscribe.

Yunaiv
Vendor

subscribe