CVE-2025-14543
EUVD-2025-20959530.04.2026, 16:16
Improper Restriction of XML External Entity Reference vulnerability in Connext Professional (Core Libraries) allows Serialized Data External Linking.This issue affects Connext Professional: from 7.4.0 before 7.7.0, from 7.0.0 before 7.3.1.1, from 6.1.0 before 6.1.*, from 6.0.0 before 6.0.*, from 5.3.0 before 5.3.*, from 4.3x before 5.2.*.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| rti | connext_professional | 4.3.0 ≤ 𝑥 ≤ 5.2.3 |
| rti | connext_professional | 5.3.0 ≤ 𝑥 ≤ 5.3.1.45 |
| rti | connext_professional | 6.0.0 ≤ 𝑥 ≤ 6.0.1.40 |
| rti | connext_professional | 6.1.0 ≤ 𝑥 ≤ 6.1.2.27 |
| rti | connext_professional | 7.0.0 ≤ 𝑥 < 7.3.1.1 |
| rti | connext_professional | 7.4.0 ≤ 𝑥 < 7.7.0 |
𝑥
= Vulnerable software versions