CVE-2025-53522: Six Apart Ltd Movable Type Advanced Software Edition

Medium severity, CVSS 6.9. EPSS: 0.2% chance of exploitation in the next 30 days.

Movable Type contains an issue with use of less trusted source. If exploited, tampered email to reset a password may be sent by a remote unauthenticated attacker.

Affected products

  • Six Apart Ltd Movable Type Advanced Software Edition
  • Six Apart Ltd Movable Type Cloud Edition: version 8.6.0 (8 series) only
  • Six Apart Ltd Movable Type Premium Advanced Edition Software Edition
  • Six Apart Ltd Movable Type Premium Cloud Edition: version 2.09 (2 series) only; version 1.66 (1 series) only
  • Six Apart Ltd Movable Type Premium Software Edition
  • Six Apart Ltd Movable Type Software Edition

Published 2025-08-20. Last modified 2026-06-17.