Skip to main content

CVE-2025-66419

8.8
HIGHCVSS v3.1 Base Score
0.05%
LOW RiskEPSS (15th percentile)

MaxKB is an open-source AI assistant for enterprise. In versions 2.3.1 and below, the tool module allows an attacker to escape the sandbox environment and escalate privileges under certain concurrent conditions. This issue is fixed in version 2.4.0.

Published: 12/11/2025
Modified: 12/15/2025
Back to CVE Lookup

Vulnerability Summary

CVSS v3 Score

8.8HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS Score (Exploitation Probability)

0.05%LOW Exploitation Risk
15th percentile

This vulnerability has a 0.05% probability of being exploited in the next 30 days, ranking higher than 15% of all scored CVEs.

Related Vulnerabilities