A vulnerability classified as critical was found in RuoYi 4.8.2. Affected by this vulnerability is an unknown functionality of the file /tool/gen/createTable. Executing a manipulation can lead to sql injection.

This vulnerability is registered as CVE-2026-38812. It is possible to launch the attack remotely. No exploit is available.