CVE detail
CVE-2025-11011
A vulnerability was found in BehaviorTree up to 4.7.0. Affected by this issue is the function JsonExporter::fromJson of the file /src/json_export.cpp. Performing manipulation of the argument Source results in null pointer dereference. The attack needs to be approached locally. The exploit has been made public and could be used. The patch is named 4b23dcaf0ce951a31299ebdd61df69f9ce99a76d. It is suggested to install a patch to address this issue.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 20.8 · diversity 6.5 · KEV 0.0 · OTX 0.0 · PoC 9.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
7 source links · newest first
- https://vuldb.com/?submit.654073vuldb.com
No excerpt available.
Exploitvuldb.comSep 26, 2025, 12:15 PM - https://vuldb.com/?id.325954vuldb.com
No excerpt available.
Exploitvuldb.comSep 26, 2025, 12:15 PM - https://vuldb.com/?ctiid.325954vuldb.com
No excerpt available.
Exploitvuldb.comSep 26, 2025, 12:15 PM No excerpt available.
Exploitgithub.comSep 26, 2025, 12:15 PMNo excerpt available.
Exploitgithub.comSep 26, 2025, 12:15 PMNo excerpt available.
Exploitgithub.comSep 26, 2025, 12:15 PM- https://github.com/BehaviorTree/BehaviorTree.CPP/commit/4b23dcaf0ce951a31299ebdd61df69f9ce99a76dgithub.com
No excerpt available.
Exploitgithub.comSep 26, 2025, 12:15 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
2 repository references · best confidence 0.90 · max 0 stars
- user-attachments/filesHigh confidencegithubNVD Exploit reference0 starsDiscovered Jul 23, 2026, 6:20 AM
NVD labels the source link as Exploit; this is not independent verification of the repository's code.
- BehaviorTree/BehaviorTree.CPPHigh confidencegithubNVD Exploit reference0 starsDiscovered Jul 23, 2026, 6:20 AM
NVD labels the source link as Exploit; this is not independent verification of the repository's code.
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2025-11013CVSS 1.9 · Low
A vulnerability was identified in BehaviorTree up to 4.7.0. This vulnerability affects the function XMLParser::PImpl::loadDocImpl of the file /src/xml_parsing.cpp of the component…
- CVE-2026-15690CVSS 1.3 · Low
A vulnerability was identified in open62541 up to 1.5.5. Affected by this issue is the function responseReadNamespacesArray of the file src/client/ua_client_connect.c of the compo…
- CVE-2026-15184CVSS 1.9 · Low
A vulnerability was found in GNU LibreDWG up to 0.13.4. The impacted element is the function dwg_next_entity of the file src/dwg.c of the component DWG File Handler. Performing a…
- CVE-2026-14790CVSS 1.9 · Low
A flaw has been found in GPAC 26.02.0. This affects the function nhmldump_send_frame of the file src/filters/write_nhml.c of the component Media File Handler. Executing a manipula…
- CVE-2026-10298CVSS 1.9 · Low
A security flaw has been discovered in ggml-org whisper.cpp up to 1.8.2. This vulnerability affects the function whisper_model_load of the file ggml/src/ggml.c. The manipulation r…
- CVE-2026-10199CVSS 1.9 · Low
A vulnerability has been found in Assimp up to 6.0.4. Affected by this issue is the function glTF2::LazyDict in the library glTF2Asset.h. Such manipulation of the argument operato…