cbcvebase.
CVE-2025-13844
published 2026-01-15

CVE-2025-13844: CWE-415: Double Free vulnerability exists that could cause heap memory corruption when the end user imports a malicious project file (SSD file) shared by the…

high8.4CVSS 4.0
AVLACLATNPRNUIAVCHVIHVAHSCLSILSALEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
CWE-415: Double Free vulnerability exists that could cause heap memory corruption when the end user imports a malicious project file (SSD file) shared by the attacker into Rapsody.

Affected

10 ranges
VendorProductVersion rangeFixed in
schneider-electricecostruxure_power_build_rapsody<= 2.8.1
schneider-electricecostruxure_power_build_rapsody<= 2.8.3
schneider-electricecostruxure_power_build_rapsody<= 2.8.5
schneider-electricecostruxure_power_build_rapsody<= 2.8.6
schneider-electricecostruxure_power_build_rapsody<= 2.8.8
schneider_electricecostruxure_power_build_rapsody
schneider_electricecostruxure_power_build_rapsody
schneider_electricecostruxure_power_build_rapsody
schneider_electricecostruxure_power_build_rapsody
schneider_electricecostruxure_power_build_rapsody