A vulnerability was found in Yunai ruoyi-vue-pro up to 2026.05 . It has been rated as problematic . This issue affects some unknown processing of the file /admin-api/crm/follow-up-record/get of the component CRM Module . The manipulation leads to missing authorization. This vulnerability is referenced as CVE-2026-57949 . Remote exploitation of the attack is possible. No exploit is available. Upgrading the affected component is advised.