CVE-2025-10975 - CVE House
Back to Database
Status published Medium CVE-2025-10975

GuanxingLu vlarl ZeroMQ reasoning_server.py run_reasoning_server deserialization

Vulnerability Description

A vulnerability was found in GuanxingLu vlarl up to 31abc0baf53ef8f5db666a1c882e1ea64def2997. This vulnerability affects the function experiments.robot.bridge.reasoning_server::run_reasoning_server of the file experiments/robot/bridge/reasoning_server.py of the component ZeroMQ. Performing manipulation of the argument Message results in deserialization. Remote exploitation of the attack is possible. The exploit has been made public and could be used. This product follows a rolling release approach for continuous delivery, so version details for affected or updated releases are not provided.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-10975

Credits & Attribution

The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:

  • zznQ (VulDB User)

Affected Vendor

Affected Software

vlarl
Vulnerable Versions:
31abc0baf53ef8f5db666a1c882e1ea64def2997

Timeline

Official Publish: September 25th, 2025
Last Modified: September 26th, 2025
Added to House: July 22nd, 2026

CVSS Vectors

V3: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R

Weaknesses (CWE)