CVE-2025-14543
EUVD-2025-20959530.04.2026, 16:16
Improper Restriction of XML External Entity Reference vulnerability in Connext Professional (Core Libraries) allows Serialized Data External Linking.This issue affects Connext Professional: from 7.4.0 before 7.7.0, from 7.0.0 before 7.3.1.1, from 6.1.0 before 6.1.*, from 6.0.0 before 6.0.*, from 5.3.0 before 5.3.*, from 4.3x before 5.2.*.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| rti | connext_professional | 7.4.0 ≤ 𝑥 < 7.7.0 | CNA |
| rti | connext_professional | 7.0.0 ≤ 𝑥 < 7.3.1.1 | CNA |
| rti | connext_professional | 6.1.0 ≤ 𝑥 < 6.2.0 | CNA |
| rti | connext_professional | 6.0.0 ≤ 𝑥 < 6.1.0 | CNA |
| rti | connext_professional | 5.3.0 ≤ 𝑥 < 5.4.0 | CNA |
| rti | connext_professional | 4.3x ≤ 𝑥 < 5.3.0 | CNA |