CVE-2025-10875

CVE-2025-10875

Vendor Salesforce
Product Mulesoft Anypoint Code Builder
Weakness CWE-1427
Published November 4, 2025
Last update November 5, 2025

CVSS base score

What the vulnerability does

01Description

Improper Neutralization of Input Used for LLM Prompting vulnerability in Salesforce Mulesoft Anypoint Code Builder allows Code Injection.This issue affects Mulesoft Anypoint Code Builder: before 1.11.6.

Key dates

02Disclosure timeline

November 4, 2025 CVE published
November 5, 2025 Record updated