Information Disclosure Vulnerability in NVIDIA Omniverse Launcher for Windows and Linux
CVE-2025-23289

5.5MEDIUM

Key Information:

Vendor

Nvidia

Vendor
CVE Published:
31 July 2025

What is CVE-2025-23289?

The NVIDIA Omniverse Launcher for Windows and Linux contains a vulnerability that allows sensitive data to be written to log files when exploited by an attacker using proxy servers. This could result in unintended exposure of confidential information, posing risks to user privacy and data security.

Affected Version(s)

NVIDIA Omniverse Launcher Windows All versions prior to and including 1.9.18

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.