Sploitus

CVE-2025-49619

6 known exploits for CVE-2025-49619

Skyvern through 0.1.85 is vulnerable to server-side template injection (SSTI) in the Prompt field of workflow blocks such as the Navigation v2 Block. Improper sanitization of Jinja2 template input allows authenticated users to inject crafted expressions that are evaluated on the server, leading to blind remote code execution (RCE).

Affected products
Jinja, Skyvern
CVSS 3.1
8.5 HIGH
EPSS
20.6% (97th percentile)
Weakness
CWE-1336
NVD status
Deferred
Published
2025-06-07
CVE-2025-49619 at NVD
Authoritative description, scoring and affected products

6 known exploits for CVE-2025-49619

Proof-of-concept code and exploit modules indexed by Sploitus