An issue in GT Edge AI Community Edition Versions before v2.0.12 allows attackers to execute arbitrary code via injecting a crafted JSON payload into the Prompt window.
References
| Link | Resource |
|---|---|
| https://gist.github.com/p80n-sec/e5eefcef155e9dd14aaaaa49f9f94cd1 | Third Party Advisory |
| https://github.com/p80n-sec/Vulnerability-Research/blob/main/CVE-2025-63665/CVE-2025-63665.md | Third Party Advisory |
Configurations
History
No history.
Information
Published : 2025-12-19 17:15
Updated : 2026-01-05 17:58
NVD link : CVE-2025-63665
Mitre link : CVE-2025-63665
CVE.ORG link : CVE-2025-63665
JSON object : View
Products Affected
gtedge
- gt_edge_ai
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
