{"id":"CVE-2025-65530","title":"An eval injection in the malware de-obfuscation routines of CloudLinux ai-bolit before v32.7.4 allows attackers to overwrite arbitrary files as root via scanning a crafted file.","summary":"An eval injection in the malware de-obfuscation routines of CloudLinux ai-bolit before v32.7.4 allows attackers to overwrite arbitrary files as root via scanning a crafted file.","severity":"high","cvss":8.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","cwe":["CWE-95"],"vendor":"cloudlinux","product":"ai-bolit","affected":["ai-bolit < 32.7.4-1"],"patched":["ai-bolit 32.7.4-1"],"published":"2025-12-12","updated":"2026-07-05","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-65530","references":[{"url":"https://blog.imunify360.com/security-advisory-imunify-ai-bolit-vulnerability","label":"cve@mitre.org"}],"tags":["nvd"],"epss":0.00302,"epssPercentile":0.23182,"ingestedAt":"2026-07-06T16:44:34.485Z","slug":"CVE-2025-65530","body":"## Overview\n\nAn eval injection in the malware de-obfuscation routines of CloudLinux ai-bolit before v32.7.4 allows attackers to overwrite arbitrary files as root via scanning a crafted file.\n\n## Affected\n\n- `ai-bolit < 32.7.4-1`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `ai-bolit 32.7.4-1`","depth":"twilight","depthScore":48,"depthScoreParts":{"impact":48.4,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}