High severity8.3NVD Advisory· Published Dec 19, 2025· Updated Jun 17, 2026
CVE-2025-67843
CVE-2025-67843
Description
A Server-Side Template Injection (SSTI) vulnerability in the MDX Rendering Engine in Mintlify Platform before 2025-11-15 allows remote attackers to execute arbitrary code via inline JSX expressions in an MDX file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4<2025-11-15+ 1 more
- (no CPE)range: <2025-11-15
- (no CPE)range: 0
- Range: <2025-11-15
Patches
Vulnerability mechanics
References
4- kibty.town/blog/mintlify/nvdExploitThird Party Advisory
- www.mintlify.com/blog/working-with-security-researchers-november-2025nvdVendor Advisory
- news.ycombinator.com/itemnvdIssue Tracking
- www.mintlify.com/docs/changelognvdRelease Notes
News mentions
0No linked articles in our index yet.