CVE-2025-64122: Nuvationenergy Nplatform
Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.
Insufficiently Protected Credentials vulnerability in Nuvation Energy Multi-Stack Controller (MSC) allows Signature Spoofing by Key Theft.This issue affects Multi-Stack Controller (MSC): through 2.5.1.
Affected products
- Nuvationenergy Nplatform: up to and including 2.5.1
Published 2026-01-02. Last modified 2026-10-07.