CVE-2025-2622 | aizuda snail-job 1.4.0 Workflow-Task Management Module check-node-expression getRuntime nodeExpression deserialization (IBSQ24)
A vulnerability was found in aizuda snail-job 1.4.0. It has been classified as critical. Affected is the function getRuntime of the file /snail-job/workflow/check-node-expression of the component Workflow-Task Management Module. The manipulation of the argument nodeExpression leads to deserialization.
This vulnerability is traded as CVE-2025-2622. It is possible to launch the attack remotely. Furthermore, there is an exploit available.