CVE-2025-55012
Last modified
CVE-2025-55012 is a high-severity vulnerability rated 8.5/10 on the CVSS scale. Zed is a multiplayer code editor. Prior to version 0.197.3, in the Zed Agent Panel allowed for an AI agent to achieve Remote Code Execution (RCE) by bypassing user permission checks. EPSS estimates a 0.19% chance of exploitation in the next 30 days.
Description
Zed is a multiplayer code editor. Prior to version 0.197.3, in the Zed Agent Panel allowed for an AI agent to achieve Remote Code Execution (RCE) by bypassing user permission checks. An AI Agent could have exploited a permissions bypass vulnerability to create or modify a project-specific configuration file, leading to the execution of arbitrary commands on a victim's machine without the explicit approval that would otherwise be required. This vulnerability has been patched in version 0.197.3. A workaround for this issue involves either avoid sending prompts to the Agent Panel, or to limit the AI Agent's file system access.
Metrics
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2025-55012?
How severe is CVE-2025-55012?
How do I fix CVE-2025-55012?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-55007Knowage is an open source analytics and business intelligenc…5.3
- CVE-2025-55008The AuthKit library for React Router 7+ provides helpers for…7.1
- CVE-2025-55009The AuthKit library for Remix provides convenient helpers fo…7.1
- CVE-2025-5501A vulnerability classified as problematic was found in Open5…6.9
- CVE-2025-55010Kanboard is project management software that focuses on the …7.2
- CVE-2025-55011Kanboard is project management software that focuses on the …5.3
- CVE-2025-55013The Assemblyline 4 Service Client interfaces with the API to…4.2
- CVE-2025-55014The YouDao plugin for StarDict, as used in stardict 3.0.7+gi…4.7
- CVE-2025-55017Improper Limitation of a Pathname to a Restricted Directory …9.1
- CVE-2025-55018An inconsistent interpretation of http requests ('http reque…5.8
- CVE-2025-55019Rejected reason: Not used
- CVE-2025-5502A vulnerability, which was classified as critical, has been …9.8
Are you affected by CVE-2025-55012?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
