PT-2025-46189 · Sublime Hq · Sublime Text
Published
2025-11-10
·
Updated
2025-11-17
·
CVE-2025-56503
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Sublime Text versions 4200
Description
An issue in Sublime Text 4 version 4200 allows authenticated attackers with low-level privileges to escalate privileges to Administrator. This is achieved by replacing the uninstall file with a crafted binary in the installation folder.
Recommendations
Replace the uninstall file in the installation folder with a secure version.
Exploit
Fix
LPE
Incorrect Privilege Assignment
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Sublime Text