CNNVD-202509-249 Information

CNNVD ID

CNNVD-202509-249

CVE-2025-56803

  • CNNVD Published: 2025-09-03

Description (Chinese)

Figma Desktop是Figma公司的一个矢量图形编辑器和原型设计工具。 Figma Desktop 125.6.5版本存在安全漏洞,该漏洞源于本地插件加载器存在命令注入漏洞,可能导致远程代码执行。

Description (English)

Figma Desktop is a vector graphic editor and prototype design tool for Figma. There is a security loophole in version 125.6.5 of Figma Desktop, which stems from the existence of a command-infusion gap in the local plug-in loader, which may lead to remote code execution.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Figma

Published

2025-09-03

Last Modified

2026-02-24

References

https://shinycolumn.notion.site/figma-command-injection https://github.com/shinyColumn/CVE-2025-56803 https://access.redhat.com/security/cve/cve-2025-56803

Share on: