CVE-2025-3982

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Apr 27, 2025
Updated: May 12, 2025
CWE ID 94
CWE ID 1321

Summary

CVE-2025-3982 is a problematic vulnerability identified in nortikin Sverchok 1.3.0. Specifically, the function SvSetPropNodeMK2 in the file sverchok/nodes/object_nodes/getsetprop_mk2.py contains a prototype pollution issue. This flaw enables an attacker to improperly modify object prototype attributes through manipulation, potentially launching the attack remotely. The exploit has been made public, increasing the risk of potential exploitation, despite the vendor's lack of response to early disclosures.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share