VYPR
Medium severity6.3NVD Advisory· Published Feb 5, 2026· Updated Jun 17, 2026

CVE-2025-10258

CVE-2025-10258

Description

Infinera DNA is vulnerable to a time-based SQL injection vulnerability due to insufficient input validation, which may result in leaking of sensitive information.

Affected products

3
  • Infinera/DNAllm-fuzzy
  • Nokia/Infinera Dnacpe-rescue2 versions
    Earlier than R24.2+ 1 more
    • (no CPE)range: Earlier than R24.2
    • cpe:2.3:a:nokia:infinera_dna:*:*:*:*:*:*:*:*range: <r24.2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.