NestJS Vulnerability Allows Code Execution on Developer Machines

Post Reply
Shane1145
Posts: 1624
Joined: Wed Sep 25, 2024 2:31 pm

NestJS Vulnerability Allows Code Execution on Developer Machines

Post by Shane1145 »

A critical remote code execution vulnerability has been discovered in the popular NestJS framework that could allow attackers to execute arbitrary code on developer machines.

The vulnerability, tracked as CVE-2025-54782, affects the @nestjs/devtools-integration package and has been assigned the highest severity rating due to its potential for complete system compromise through simple web-based attacks.

https://gbhackers.com/nestjs-vulnerabil ... execution/
Post Reply