CVE-2025-57106: Vtk

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Kitware VTK (Visualization Toolkit) up to 9.5.0 is vulnerable to Buffer Overflow in vtkGLTFDocumentLoader. The vulnerability occurs in the BufferDataExtractionWorker template function when processing GLTF accessor data.

Affected products

  • Vtk Vtk: up to and including 9.5.0

Published 2025-10-31. Last modified 2026-06-17.