CVE-2025-64123: Nuvationenergy Nplatform
Critical severity, CVSS 9.8. EPSS: 0.3% chance of exploitation in the next 30 days.
Unintended Proxy or Intermediary vulnerability in Nuvation Energy Multi-Stack Controller (MSC) allows Network Boundary Bridging.This issue affects Multi-Stack Controller (MSC): through and including release 2.5.1.
Affected products
- Nuvationenergy Nplatform: up to and including 2.5.1
Published 2026-01-02. Last modified 2026-10-07.