Vulnerability Description
A vulnerability was detected in Kilo Code up to 4.86.0. Affected is the function ClineProvider of the file src/core/webview/ClineProvider.ts of the component Prompt Handler. Performing manipulation results in injection. The attack can be initiated remotely. The exploit is now public and may be used. Applying a patch is the recommended action to fix this issue.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://github.com/Kilo-Org/kilocode/pull/2244
- https://github.com/Kilo-Org/kilocode/pull/2244/commits/2fdddf89edba41ec3a527134e
- https://mcpsec.dev/advisories/2025-10-02-kilo-code-ai-agent-supply-chain-attack/
- https://vuldb.com/?ctiid.327382
- https://vuldb.com/?id.327382
- https://vuldb.com/?submit.667004
- https://mcpsec.dev/advisories/2025-10-02-kilo-code-ai-agent-supply-chain-attack/
FAQ
What is CVE-2025-11445?
CVE-2025-11445 is a vulnerability with a CVSS score of 6.3 (MEDIUM). A vulnerability was detected in Kilo Code up to 4.86.0. Affected is the function ClineProvider of the file src/core/webview/ClineProvider.ts of the component Prompt Handler. Performing manipulation re...
How severe is CVE-2025-11445?
CVE-2025-11445 has been rated MEDIUM with a CVSS base score of 6.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-11445?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.