Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Echarris128

#34753of 53,634
7.5Total CVSS
Vulnerabilities · 1
PT-2025-41241
7.5
2025-10-08
Kilo Code · Kilo Code · CVE-2025-11445
**Name of the Vulnerable Software and Affected Versions** Kilo Code versions prior to 4.86.0 **Description** A flaw exists in Kilo Code that allows for injection through manipulation of the `ClineProvider` function within the `src/core/webview/ClineProvider.ts` file of the Prompt Handler component. This issue can be exploited remotely. The exploit is publicly available. The vulnerable component is the Prompt Handler. **Recommendations** Apply a patch to address this issue.