CVE-2025-55322
Microsoft · Published September 24, 2025
7.3
CVSS v3.1
HIGHPatch availableGet patch
Description
OmniParser Remote Code Execution Vulnerability. Binding to an unrestricted ip address in GitHub allows an unauthorized attacker to execute code over a network.
Affected Products
- OmniParser
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L/E:U/RL:O/RC:C