CVE-2025-27925
CVSS 3.1 Score 8.5 of 10 (high)
Details
Published Mar 10, 2025
CWE ID 502
Summary
CVE-2025-27925 is a vulnerability affecting Nintex Automation versions 5.6 and 5.7 prior to 5.8. This issue involves insecure deserialization of user input, allowing an attacker to execute arbitrary code on affected systems. Successful exploitation could lead to serious consequences, including unauthorized system access or data theft. Users are advised to upgrade to the latest version of Nintex Automation to mitigate this risk. Failure to address this vulnerability could result in significant security breaches.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Automation