CVE-2025-6965: exploitation status and patch state CVE-2025-6965 · CVSS 9.8 CRITICAL · EPSS 75% · patch available
There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a memory corruption issue. We recommend upgrading to version 3.50.2 or above.
Is CVE-2025-6965 exploited? Not in the CISA KEV catalog. EPSS puts exploitation in the next 30 days at 75%. Public exploit code: proof of concept. Which products and versions are affected? No affected package list recorded here yet.
Is there a patch? What PlainSec published about CVE-2025-6965 PlainSec has not published a story about this CVE.
Primary sources What this record does not say No affected package data. KEV and EPSS are re-checked daily. Record last updated 2026-08-11.
CVE-2025-6965: exploitation status and patch state CVE-2025-6965 · CVSS 9.8 CRITICAL · EPSS 75% · patch available
There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a memory corruption issue. We recommend upgrading to version 3.50.2 or above.
Is CVE-2025-6965 exploited? Not in the CISA KEV catalog. EPSS puts exploitation in the next 30 days at 75%. Public exploit code: proof of concept. Which products and versions are affected? No affected package list recorded here yet.
Is there a patch? What PlainSec published about CVE-2025-6965 PlainSec has not published a story about this CVE.
Primary sources What this record does not say No affected package data. KEV and EPSS are re-checked daily. Record last updated 2026-08-11.