Critical severity10.0NVD Advisory· Published Feb 6, 2025· Updated Jun 17, 2026
CVE-2025-0982
CVE-2025-0982
Description
Sandbox escape in the JavaScript Task feature of Google Cloud Application Integration allows an actor to execute arbitrary unsandboxed code via crafted JavaScript code executed by the Rhino engine. Effective January 24, 2025, Application Integration will no longer support Rhino as the JavaScript execution engine. No further fix actions are needed.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:google:application_integration:*:*:*:*:*:*:*:*Range: <=2025-01-23
(expand)+ 1 more
- (no CPE)
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
1- cloud.google.com/application-integration/docs/release-notesnvdRelease Notes
News mentions
0No linked articles in our index yet.