CVE-2025-21423
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Apr 7, 2025
CWE ID 129
Summary
CVE-2025-21423 is a newly identified vulnerability that affects the handling of client calls to EnableTestMode through an Escape call. This issue results in memory corruption, potentially allowing an attacker to execute arbitrary code or cause a denial-of-service condition. Successful exploitation could lead to serious security implications if the vulnerable system is exposed to untrusted inputs. Organizations are urged to apply patches or workarounds to mitigate this risk and secure their environment.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.