CVE-2025-23253: NVIDIA App

Low severity, CVSS 2.5. EPSS: 0.2% chance of exploitation in the next 30 days.

NVIDIA NvContainer service for Windows contains a vulnerability in its usage of OpenSSL, where an attacker could exploit a hard-coded constant issue by copying a malicious DLL in a hard-coded path. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, or data tampering.

Affected products

Published 2025-04-22. Last modified 2026-06-17.