CVE-2025-64319

Incorrect Permission Assignment for Critical Resource vulnerability in Salesforce Mulesoft Anypoint Code Builder allows Manipulating Writeable Configuration Files.This issue affects Mulesoft Anypoint Code Builder: before 1.12.1
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:salesforce:mulesoft_anypoint_code_builder:*:*:*:*:*:*:*:*

History

04 Feb 2026, 19:59

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de Asignación Incorrecta de Permisos para Recurso Crítico en Salesforce Mulesoft Anypoint Code Builder permite manipular archivos de configuración escribibles. Este problema afecta a Mulesoft Anypoint Code Builder: antes de la 1.11.6.
References () https://help.salesforce.com/s/articleView?id=005228032&type=1 - () https://help.salesforce.com/s/articleView?id=005228032&type=1 - Vendor Advisory
CPE cpe:2.3:a:salesforce:mulesoft_anypoint_code_builder:*:*:*:*:*:*:*:*
First Time Salesforce
Salesforce mulesoft Anypoint Code Builder

11 Nov 2025, 05:16

Type Values Removed Values Added
Summary (en) Incorrect Permission Assignment for Critical Resource vulnerability in Salesforce Mulesoft Anypoint Code Builder allows Manipulating Writeable Configuration Files.This issue affects Mulesoft Anypoint Code Builder: before 1.11.6. (en) Incorrect Permission Assignment for Critical Resource vulnerability in Salesforce Mulesoft Anypoint Code Builder allows Manipulating Writeable Configuration Files.This issue affects Mulesoft Anypoint Code Builder: before 1.12.1

04 Nov 2025, 22:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.3

04 Nov 2025, 19:17

Type Values Removed Values Added
New CVE

Information

Published : 2025-11-04 19:17

Updated : 2026-02-04 19:59


NVD link : CVE-2025-64319

Mitre link : CVE-2025-64319

CVE.ORG link : CVE-2025-64319


JSON object : View

Products Affected

salesforce

  • mulesoft_anypoint_code_builder
CWE
CWE-732

Incorrect Permission Assignment for Critical Resource