CVE-2025-68619 | SignalK Server up to 2.18.x REST API Endpoint code injection (GHSA-93jc-vqqc-vvvh / EUVD-2025-206137)
A vulnerability labeled as critical has been found in SignalK Server up to 2.18.x. This impacts an unknown function of the component REST API Endpoint. Executing a manipulation can lead to code injection.
This vulnerability is registered as CVE-2025-68619. It is possible to launch the attack remotely. No exploit is available.
The affected component should be upgraded.