CVE-2025-3982
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Apr 27, 2025
Updated: May 12, 2025
CWE ID 94
CWE ID 1321
Summary
CVE-2025-3982 is a problematic vulnerability identified in nortikin Sverchok 1.3.0. Specifically, the function SvSetPropNodeMK2 in the file sverchok/nodes/object_nodes/getsetprop_mk2.py contains a prototype pollution issue. This flaw enables an attacker to improperly modify object prototype attributes through manipulation, potentially launching the attack remotely. The exploit has been made public, increasing the risk of potential exploitation, despite the vendor's lack of response to early disclosures.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.