VendorsNintexautomationany version
Vulnerabilities

Nintex Automation any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2025-27925
Nintex Automation 5.6 and 5.7 before 5.8 has insecure deserialization of user input.
Published 2025-03-10 · Analyzed
9.8EPSS 0.004
CVE-2025-27924
Nintex Automation 5.6 and 5.7 before 5.8 has a stored XSS issue associated with the "Navigate to a URL" action.
Published 2025-03-10 · Analyzed
5.4EPSS 0.002
CVE-2025-27926
In Nintex Automation 5.6 and 5.7 before 5.8, the K2 SmartForms Designer folder has configuration files (web.config) containing passwords that are readable by unauthorized users.
Published 2025-03-10 · Analyzed
5.3EPSS 0.003