Substance 3d Viewer
Vendor:
First CVE: Jul 8, 2025 · Active for 1 year
12
Total CVEs
More Total CVEs than 91% of tracked products
12.0
Avg CVEs / Year
Higher CVE frequency than 97% of tracked products
7.2
Avg CVSS
Higher Avg CVSS than 48% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Substance 3d Viewer over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jul 8, 2025
12 months ago
Most Recent CVE
Oct 14, 2025
287 days ago
CVE Severity & Scoring
Substance 3d Viewer12 CVEs
25%
75%
All CVEs353,240 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local12 (100.0%)
Network0 (0.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low12 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None0 (0.0%)
Unknown0 (0.0%)
Required12 (100.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None12 (100.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (12 CVEs).
12 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-54280HIGH Substance3D - Viewer versions 0.25.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current us | Oct 14, 2025 | 7.8 | 26 | NO | NO |
CVE-2025-54245HIGH Substance3D - Viewer versions 0.25.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current us | Sep 9, 2025 | 7.8 | 26 | NO | NO |
CVE-2025-54244HIGH Substance3D - Viewer versions 0.25.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the curr | Sep 9, 2025 | 7.8 | 26 | NO | NO |
CVE-2025-54243HIGH Substance3D - Viewer versions 0.25.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current us | Sep 9, 2025 | 7.8 | 26 | NO | NO |
CVE-2025-54274HIGH Substance3D - Viewer versions 0.25.2 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the cur | Oct 14, 2025 | 7.8 | 25 | NO | NO |
CVE-2025-54273HIGH Substance3D - Viewer versions 0.25.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current us | Oct 14, 2025 | 7.8 | 25 | NO | NO |
CVE-2025-49560HIGH Substance3D - Viewer versions 0.25 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the curren | Aug 12, 2025 | 7.8 | 25 | NO | NO |
CVE-2025-49569HIGH Substance3D - Viewer versions 0.25 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user | Aug 12, 2025 | 7.8 | 24 | NO | NO |
CVE-2025-43582HIGH Substance3D - Viewer versions 0.22 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the curren | Jul 8, 2025 | 7.8 | 22 | NO | NO |
CVE-2025-54275MEDIUM Substance3D - Viewer versions 0.25.2 and earlier are affected by an out-of-bounds write vulnerability that could lead to application denial-of-service. An attacker could leverage t | Oct 14, 2025 | 5.5 | 20 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (12 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (12 CVEs).
Media Mentions
Signals from CVEs in this product scope (12 CVEs).
Top CNAs Publishing CVEs For Substance 3d Viewer
Top CWEs
Versions
No cataloged versions.