CVE-2025-3464: ASUS Armoury Crate

High severity, CVSS 8.4. EPSS: 0.6% chance of exploitation in the next 30 days.

A race condition vulnerability exists in Armoury Crate. This vulnerability arises from a Time-of-check Time-of-use issue, potentially leading to authentication bypass. Refer to the 'Security Update for Armoury Crate App' section on the ASUS Security Advisory for more information.

Affected products

  • ASUS Armoury Crate: version v5.9.9.0~v6.1.18 only

Published 2025-06-16. Last modified 2026-06-17.