CVE-2025-53884: Suse Neuvector
Medium severity, CVSS 5.3. EPSS: 0.2% chance of exploitation in the next 30 days.
NeuVector stores user passwords and API keys using a simple, unsalted hash. This method is vulnerable to rainbow table attack (offline attack where hashes of known passwords are precomputed).
Affected products
- Suse Neuvector: from 5.0.0, before 5.4.6 (fixed in 5.4.6)
Published 2025-09-17. Last modified 2026-06-17.