Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-6100 | A Server-Side Template Injection (SSTI) vulnerability in Spacy-LLM v0.7.2 allows attackers to execute arbitrary code via injecting a crafted payload into the template field. |
Github GHSA |
GHSA-793v-gxfp-9q9h | Spacy-LLM Server-Side Template Injection (SSTI) vulnerability |
Wed, 02 Apr 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Thu, 06 Mar 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-94 | |
| Metrics |
cvssV3_1
|
Wed, 05 Mar 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A Server-Side Template Injection (SSTI) vulnerability in Spacy-LLM v0.7.2 allows attackers to execute arbitrary code via injecting a crafted payload into the template field. | |
| References |
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-04-08T20:35:57.417Z
Reserved: 2025-02-07T00:00:00.000Z
Link: CVE-2025-25362
Updated: 2025-03-06T14:28:04.781Z
Status : Deferred
Published: 2025-03-05T21:15:19.803
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-25362
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA