Skyvern 0.1.85 – Remote Code Execution (RCE) via SSTI

# Exploit Title: Skyvern 0.1.85 – Remote Code Execution (RCE) via SSTI # Date: 2025-06-15 # Exploit Author: Cristian Branet # Vendor Homepage: https://www.skyvern.com/ # Software Link: https://github.com/Skyvern-AI/skyvern # Version: < 0.1.85, before commit db856cd # Tested on: Skyvern Cloud app / Local Skyvern (Linux Ubuntu 22.04) # CVE : CVE-2025-49619 # Article: https://cristibtz.github.io/posts/CVE-2025-49619/ …

Read More

Hidden sheep

Hidden sheep AI Weirdness: the strange side of machine learning You have landed upon a bonus post! In bonus posts, I include extras as a thank-you to AI Weirdness supporters. It’s your financial support that helps me…

Read More