PT-2025-49806 · Robocode+3 · Robocode+3

·

CVE-2025-14307

·

Published

2025-01-01

·

Updated

2026-06-04

CVSS v4.0

9.3

Critical

VectorAV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/AU:Y/R:U/V:D/RE:M/U:Red
Name of the Vulnerable Software and Affected Versions Robocode version 1.9.3.6
Description An insecure temporary file creation issue exists in the AutoExtract component. The createTempFile method does not securely create temporary files, potentially allowing attackers to exploit race conditions. This could lead to arbitrary code execution or overwriting critical files by manipulating the temporary file creation process.
Recommendations Restrict permissions related to temporary file creation. Monitor for suspicious activity related to temporary file operations. Isolate affected environments.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-14307
GHSA-2MXR-RC97-XRJ2
USN-8385-1

Affected Products

Debian
Linuxmint
Robocode
Ubuntu