CVE-2025-14605

Severity CVSS v4.0:
MEDIUM
Type:
CWE-427 Uncontrolled Search Path Element
Publication date:
07/01/2026
Last modified:
12/01/2026

Description

Uncontrolled Search Path Element vulnerability in Altera Quartus Prime Pro on Windows (System Console modules) allows Search Order Hijacking.This issue affects Quartus Prime Pro: from 17.0 through 25.1.1.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:intel:quartus_prime:*:*:*:*:pro:*:*:* 17.0 (including) 25.1.1 (excluding)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools