CVE-2025-21423

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Apr 7, 2025
CWE ID 129

Summary

CVE-2025-21423 is a newly identified vulnerability that affects the handling of client calls to EnableTestMode through an Escape call. This issue results in memory corruption, potentially allowing an attacker to execute arbitrary code or cause a denial-of-service condition. Successful exploitation could lead to serious security implications if the vulnerable system is exposed to untrusted inputs. Organizations are urged to apply patches or workarounds to mitigate this risk and secure their environment.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share