Vulnerability Description
A security issue was discovered within the legacy ADI server component of Verve Asset Manager, caused by plaintext secrets stored in environment variables on the ADI server. This component has been retired and has been optional since the 1.36 release in 2024.
Related Weaknesses (CWE)
References
FAQ
What is CVE-2025-14376?
CVE-2025-14376 is a documented vulnerability. A security issue was discovered within the legacy ADI server component of Verve Asset Manager, caused by plaintext secrets stored in environment variables on the ADI server. This component has been re...
How severe is CVE-2025-14376?
CVSS scoring is not yet available for CVE-2025-14376. Check NVD for updates.
Is there a patch for CVE-2025-14376?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.