CVE-2025-59713: High severity Snipe-IT Snipe-IT vulnerability
Published Sep 19, 2025
·Updated
Snipe-IT before 8.1.18 allows unsafe deserialization.
Affected Software
3 affected componentsFixes available
Snipe-IT Snipe-IT<8.1.18
composer/snipe/snipe-it<8.1.18
8.1.18
Snipeitapp Snipe-it<8.1.18
Event History
Sep 19, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 AM
DescriptionSeverityWeaknessAffected Software
Advisory Published
via GitHub·03:30 AM
Data Sourced
via GitHub·03:30 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-59713?
CVE-2025-59713 is classified as a critical vulnerability due to its potential exploitation via unsafe deserialization.
2
How do I fix CVE-2025-59713?
To remediate CVE-2025-59713, upgrade your Snipe-IT installation to version 8.1.18 or later.
3
What does CVE-2025-59713 affect?
CVE-2025-59713 affects all versions of Snipe-IT prior to 8.1.18.
4
What are the potential impacts of exploiting CVE-2025-59713?
Exploitation of CVE-2025-59713 can lead to arbitrary code execution on the affected Snipe-IT installations.
5
Is there a workaround for CVE-2025-59713?
There is no known workaround for CVE-2025-59713, and upgrading is the recommended solution.