CVE-2025-59712

MEDIUM

Snipe-IT < 8.1.18 - Cross-Site Scripting

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2025-59712. PoCs published by synacktiv.

AI-analyzed exploit summary This repository contains a functional exploit for CVE-2025-59712 (XSS via User-Agent header) and CVE-2025-59713 (unsafe deserialization leading to RCE) in Snipe-IT. The exploit includes automated scripts for XSS, RCE, and a full chain attack, with detailed usage instructions and technical context.

Description

Snipe-IT before 8.1.18 allows XSS.

Exploits (1)

github WORKING POC 2 stars
by synacktiv · pythonpoc
https://github.com/synacktiv/CVE-2025-59712_CVE-2025-59713

This repository contains a functional exploit for CVE-2025-59712 (XSS via User-Agent header) and CVE-2025-59713 (unsafe deserialization leading to RCE) in Snipe-IT. The exploit includes automated scripts for XSS, RCE, and a full chain attack, with detailed usage instructions and technical context.

Classification
Working Poc 95%
Attack Type
Xss | Deserialization | Rce
Complexity
Moderate
Reliability
Reliable
Target: Snipe-IT (open-source asset management system)
Auth required
Prerequisites: Low-privileged user credentials for XSS · Admin credentials for RCE · Access to /reports/activity route
devstral-2 · analyzed Feb 19, 2026 Full analysis →

References (1)

Core 1

Scores

CVSS v3 6.4
EPSS 0.0001
EPSS Percentile 1.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-79
Status published
Products (2)
snipe/snipe-it 0 - 8.1.18Packagist
snipeitapp/snipe-it < 8.1.18
Published Sep 19, 2025
Tracked Since Feb 18, 2026