CVE-2025-6033: Ni Circuit Design Suite

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

There is a memory corruption vulnerability due to an out of bounds write in XML_Serialize() when using SymbolEditor in NI Circuit Design Suite.  This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted .sym file. This vulnerability affects NI Circuit Design Suite 14.3.1 and prior versions.

Affected products

  • Ni Circuit Design Suite: before 14.3.2 (fixed in 14.3.2)

Published 2025-09-30. Last modified 2026-06-17.