VYPR
Critical severity9.1NVD Advisory· Published Apr 30, 2026· Updated Sep 22, 2026

CVE-2025-14543

CVE-2025-14543

Description

Improper Restriction of XML External Entity Reference vulnerability in RTI Connext Professional (Core Libraries) allows Serialized Data External Linking. This issue affects Connext Professional: from 7.4.0 before 7.7.0, from 7.0.0 before 7.3.1.1, from 6.1.0 before 6.1.*, from 6.0.0 before 6.0.*, from 5.3.0 before 5.3.*, from 5.2.0 before 5.2.*, from 4.3x before 5.1.*.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Rti/Connext Professionalllm-fuzzy2 versions
    from 7.4.0 before 7.7.0, from 7.0.0 before 7.3.1.1, from 6.1.0 before 6.1.*, from 6.0.0 before 6.0.*, from 5.3.0 before 5.3.*, from 4.3x before 5.2.*+ 1 more
    • (no CPE)range: from 7.4.0 before 7.7.0, from 7.0.0 before 7.3.1.1, from 6.1.0 before 6.1.*, from 6.0.0 before 6.0.*, from 5.3.0 before 5.3.*, from 4.3x before 5.2.*
    • cpe:2.3:a:rti:connext_professional:*:*:*:*:*:*:*:*range: >=4.3.0,<=5.2.3
  • Range: <5.2.*

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.