CVE-2025-11571: Silabs.com Simplicity Installer Tool Silicon Labs Tool - Slt For Simplicity Studio v6

Low severity, CVSS 2.1. EPSS: 0.4% chance of exploitation in the next 30 days.

Vulnerable endpoints accept user-controlled input through a URL in JSON format which enables command execution. The commands allowed to execute can open executables. However, the commands cannot pass parameters or arguments.  To successfully execute this attack, the attacker needs to be on the same network.

Affected products

  • Silabs.com Simplicity Installer Tool Silicon Labs Tool - Slt For Simplicity Studio v6: up to and including 1.0.1
  • Silabs.com Simplicity Studio v5: up to and including 5.11.2.1

Published 2026-03-24. Last modified 2026-06-17.