CVE-2025-64122: Nuvationenergy Nplatform

Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.

Insufficiently Protected Credentials vulnerability in Nuvation Energy Multi-Stack Controller (MSC) allows Signature Spoofing by Key Theft.This issue affects Multi-Stack Controller (MSC): through 2.5.1.

Affected products

Published 2026-01-02. Last modified 2026-10-07.