


Perceptive Security
SOC/SIEM Consultancy

A security flaw has been discovered in YunaiV yudao-cloud up to 2026.01. This impacts the function getAccessToken of the file yudao-module-system-biz/src/main/j…
Published:
2 May 2026 at 22:00:00
Alert date:
3 May 2026 at 06:00:49
Source:
nvd.nist.gov
Identity & Access, Web Technologies
A security vulnerability has been discovered in YunaiV yudao-cloud up to version 2026.01. The flaw affects the getAccessToken function in the OAuth2TokenServiceImpl.java file, leading to improper authentication. The vulnerability can be exploited remotely and public exploits are available. The vendor was contacted but did not respond to the disclosure.
Technical details
Mitigation steps:
Affected products:
YunaiV yudao-cloud
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-7679
https://github.com/9str0IL/CVE/issues/1
https://vuldb.com/submit/800866
https://vuldb.com/vuln/360832
https://vuldb.com/vuln/360832/cti
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
