PT-2025-32589 · Zed · Zed

Maccarita

·

Published

2025-08-11

·

Updated

2026-01-18

·

CVE-2025-55012

CVSS v4.0

8.5

High

VectorAV:L/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Zed versions prior to 0.197.3
Description Zed is a multiplayer code editor. In versions prior to 0.197.3, the Zed Agent Panel allowed an AI agent to achieve Remote Code Execution (RCE) by bypassing user permission checks. An AI Agent could exploit a permissions bypass to create or modify a project-specific configuration file, leading to the execution of arbitrary commands on a victim's machine without required approval. The vulnerability exists within the Zed Agent Panel and involves bypassing user permission checks. The vulnerable component allows an AI agent to create or modify project-specific configuration files. This can lead to the execution of arbitrary commands on a victim’s machine. The Zed Agent Panel is the affected API endpoint.
Recommendations Versions prior to 0.197.3 should be updated to version 0.197.3 or later. Avoid sending prompts to the Agent Panel. Limit the AI Agent's file system access.

Exploit

Fix

RCE

Improper Access Control

Authentication Bypass Using an Alternate Path or Channel

Weakness Enumeration

Related Identifiers

CVE-2025-55012
GHSA-X34M-39XW-G2WR

Affected Products

Zed