High severityNVD Advisory· Published Sep 25, 2025· Updated Sep 26, 2025
CVE-2025-56769
CVE-2025-56769
Description
An issue was discovered in chinabugotech hutool before 5.8.4 allowing attackers to execute arbitrary expressions that lead to arbitrary method invocation and potentially remote code execution (RCE) via the QLExpressEngine class.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
cn.hutool:hutool-extraMaven | < 5.8.40 | 5.8.40 |
Affected products
2Patches
Vulnerability mechanics
References
4News mentions
0No linked articles in our index yet.