CVE-2025-0781

CVSS 3.1 Score 8.6 of 10 (high)

Details

Published Jan 28, 2025
Updated: Jan 29, 2025
CWE ID 863

Summary

CVE-2025-0781 is a vulnerability that allows attackers to bypass the sandboxing mechanism of Nasal scripts. Instead of containing scripts within a restricted environment, this flaw enables malicious code to write to any file path that the user is authorized to modify at the operating system level. This compromise can lead to potential data theft, unauthorized changes, or even system takeover. Users are strongly advised to update their affected systems as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share