CVE-2025-0781

CRITICAL9.9EPSS 0.04%

flightgear - security update

Published: 1/28/2025Modified: 4/28/2026

Description

An attacker can bypass the sandboxing of Nasal scripts and arbitrarily write to any file path that the user has permission to modify at the operating-system level.

Affected packages (4)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1CRITICAL9.9CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

References (1)