CVE-2025-64695: Secuavail Logstare Collector

High severity, CVSS 8.4. EPSS: 0.2% chance of exploitation in the next 30 days.

Uncontrolled search path element issue exists in the installer of LogStare Collector (for Windows). If exploited, arbitrary code may be executed with the privilege of the user invoking the installer.

Affected products

  • Secuavail Logstare Collector: before 2.4.2 (fixed in 2.4.2)

Published 2025-11-21. Last modified 2026-10-07.