PT-2025-41188 · Microsoft+1 · Windows+1
Michael Lappas
·
Published
2025-10-07
·
Updated
2026-01-25
·
CVE-2025-62186
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Anki versions prior to 25.02.5
Description
A specially crafted shared deck on Windows can lead to the execution of arbitrary commands when playing audio due to improper handling of URL schemes.
Recommendations
Update to version 25.02.5 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Anki
Windows