CVE-2025-7849: Ni Labview

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

A memory corruption vulnerability due to improper error handling when a VILinkObj is null exists in NI LabVIEW that may result in arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted VI. This vulnerability affects NI LabVIEW 2025 Q1 and prior versions.

Affected products

  • Ni Labview: up to and including 2021; version 2022 only; version 2023 only; version 2024 only; version 2025 only

Published 2025-07-29. Last modified 2026-06-17.