SimStudioAI sim route.ts code injection
Vulnerability Description
A vulnerability was identified in SimStudioAI sim up to 1.0.0. This impacts an unknown function of the file apps/sim/app/api/function/execute/route.ts. The manipulation of the argument code leads to code injection. The attack is possible to be carried out remotely.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-10097
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- ZAST.AI (VulDB User)
References
More from SimStudioAI
View All →Affected Vendor
SimStudioAI
View all reports →