Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-27560 | Sunshine for Windows, version v2025.122.141614, contains a DLL search-order hijacking vulnerability, allowing attackers to insert a malicious DLL in user-writeable PATH directories. |
Tue, 20 Jan 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 03 Nov 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Wed, 17 Sep 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:lizardbyte:sunshine:2025.122.141614:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
Fri, 12 Sep 2025 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Lizardbyte
Lizardbyte sunshine Microsoft Microsoft windows |
|
| Vendors & Products |
Lizardbyte
Lizardbyte sunshine Microsoft Microsoft windows |
Wed, 10 Sep 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-427 | |
| Metrics |
cvssV3_1
|
Tue, 09 Sep 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Sunshine for Windows, version v2025.122.141614, contains a DLL search-order hijacking vulnerability, allowing attackers to insert a malicious DLL in user-writeable PATH directories. | |
| Title | LizardBytes Sunshine for Windows contains a DLL search-order hijacking vulnerability | |
| References |
|
Status: PUBLISHED
Assigner: certcc
Published:
Updated: 2026-01-20T16:12:44.974Z
Reserved: 2025-09-09T17:25:14.481Z
Link: CVE-2025-10198
Updated: 2025-11-03T18:08:24.774Z
Status : Modified
Published: 2025-09-09T18:15:31.743
Modified: 2026-01-20T17:15:48.180
Link: CVE-2025-10198
No data.
OpenCVE Enrichment
Updated: 2025-09-12T09:11:40Z
EUVD