VYPR
High severity7.5NVD Advisory· Published Oct 20, 2025· Updated Apr 15, 2026

CVE-2025-61301

CVE-2025-61301

Description

Denial-of-analysis in reporting/mongodb.py and reporting/jsondump.py in CAPEv2 (commit 52e4b43, on 2025-05-17) allows attackers who can submit samples to cause incomplete or missing behavioral analysis reports by generating deeply nested or oversized behavior data that trigger MongoDB BSON limits or orjson recursion errors when the sample executes in the sandbox.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Kevoreilly/Capev2references2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: commit 52e4b43

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.

CVE-2025-61301 · High · VYPR