CVE-2026-108112: ruoyi-ai 3.0.0 through 3.1.0 Missing Authorization via Workflow Delete Endpoint
ruoyi-ai 3.0.0 through 3.1.0 contains a missing authorization vulnerability that allows authenticated users to delete other users' workflows via POST /workflow/del/{uuid}. Attackers can obtain workflow UUIDs from GET /workflow/search and supply them because softDelete() skips the PrivilegeUtil.checkAndGetByUuid() ownership check, removing owners' workflows.
Affected Software
Event History
Frequently Asked Questions
Who can exploit this issue?
Any authenticated user who can access the workflow endpoints can exploit it. The attacker does not need to own the target workflow because the delete operation skips the ownership check.
What does an attacker need to delete another user's workflow?
The attacker needs a target workflow UUID. UUIDs can be obtained through GET /workflow/search and then submitted to POST /workflow/del/{uuid}.
Which versions are affected?
ruoyi-ai versions 3.0.0 through 3.1.0 are affected.
What is the impact of successful exploitation?
An attacker can delete workflows belonging to other users. The reported impact is integrity and availability loss; no confidentiality impact is indicated.