VYPR
High severity7.4OSV Advisory· Published Jan 21, 2026· Updated Jun 17, 2026

CVE-2025-68134

CVE-2025-68134

Description

EVerest is an EV charging software stack. Prior to version 2025.10.0, the use of the assert function to handle errors frequently causes the module to crash. This is particularly critical because the manager shuts down all other modules and exits when any one of them terminates, leading to a denial of service. In a context where a manager handles multiple EVSE, this would also impact other users. Version 2025.10.0 fixes the issue.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Everest/Everest CoreOSV2 versions
    2022.12.0, 2022.12.1, 2023.1.0, …+ 1 more
    • (no CPE)range: 2022.12.0, 2022.12.1, 2023.1.0, …
    • (no CPE)range: <2025.10.0
  • cpe:2.3:o:linuxfoundation:everest:*:*:*:*:*:*:*:*
    Range: <2025.10.0
  • Everest/Everestllm-fuzzy
    Range: <2025.10.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.