CVE-2025-14307

An insecure temporary file creation vulnerability exists in the AutoExtract component of Robocode version 1.9.3.6. The createTempFile method fails to securely create temporary files, allowing attackers to exploit race conditions and potentially execute arbitrary code or overwrite critical files. This vulnerability can be exploited by manipulating the temporary file creation process, leading to potential unauthorized actions.
References
Link Resource
https://github.com/robo-code/robocode/pull/68 Issue Tracking Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:robocode:robocode:1.9.3.6:*:*:*:*:*:*:*

History

05 Jan 2026, 16:19

Type Values Removed Values Added
First Time Robocode robocode
Robocode
References () https://github.com/robo-code/robocode/pull/68 - () https://github.com/robo-code/robocode/pull/68 - Issue Tracking, Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.1
CPE cpe:2.3:a:robocode:robocode:1.9.3.6:*:*:*:*:*:*:*

09 Dec 2025, 16:17

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-09 16:17

Updated : 2026-01-05 16:19


NVD link : CVE-2025-14307

Mitre link : CVE-2025-14307

CVE.ORG link : CVE-2025-14307


JSON object : View

Products Affected

robocode

  • robocode
CWE
CWE-377

Insecure Temporary File