High severity8.1NVD Advisory· Published Dec 9, 2025· Updated Jun 17, 2026
CVE-2025-14307
CVE-2025-14307
Description
An insecure temporary file creation vulnerability exists in the AutoExtract component of Robocode version 1.9.3.6. The createTempFile method fails to securely create temporary files, allowing attackers to exploit race conditions and potentially execute arbitrary code or overwrite critical files. This vulnerability can be exploited by manipulating the temporary file creation process, leading to potential unauthorized actions.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
net.sf.robocode:robocode.battleMaven | < 1.9.5.6 | 1.9.5.6 |
Affected products
3cpe:2.3:a:robocode:robocode:1.9.3.6:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:robocode:robocode:1.9.3.6:*:*:*:*:*:*:*
- (no CPE)range: 1.9.3.6
Patches
Vulnerability mechanics
References
4- github.com/advisories/GHSA-2mxr-rc97-xrj2ghsaADVISORY
- github.com/robo-code/robocode/pull/68nvdIssue TrackingVendor AdvisoryWEB
- nvd.nist.gov/vuln/detail/CVE-2025-14307ghsaADVISORY
- github.com/robo-code/robocode/commit/9f882bba2a9cd91da57c16b98699f8cc9b354f3aghsaWEB
News mentions
0No linked articles in our index yet.