CVE-2025-22799
CVSS 3.1 Score 8.5 of 10 (high)
Details
Published Jan 15, 2025
CWE ID 89
Summary
CVE-2025-22799 is an SQL Injection vulnerability affecting the Vertim Coders Neon Product Designer. The flaw stems from the application's failure to neutralize special elements in SQL commands, enabling an attacker to inject malicious code. This issue poses a serious risk, as it can lead to unauthorized data access or manipulation, and it affects all versions of Neon Product Designer, from the unspecified initial release through 2.1.1.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.