BunnyPad is a note taking software. Prior to version 11.0.27000.0915, opening files greater than or equal to 20MB causes buffer overflow to occur. This issue has been patched in version 11.0.27000.0915. Users who wish not to upgrade should refrain from opening files larger than 10MB.
History

Tue, 23 Sep 2025 16:15:00 +0000

Type Values Removed Values Added
First Time appeared Bunnypad
Bunnypad bunnypad
Vendors & Products Bunnypad
Bunnypad bunnypad

Tue, 23 Sep 2025 00:15:00 +0000

Type Values Removed Values Added
References
Metrics threat_severity

None

threat_severity

Moderate


Mon, 22 Sep 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 22 Sep 2025 18:15:00 +0000

Type Values Removed Values Added
Description BunnyPad is a note taking software. Prior to version 11.0.27000.0915, opening files greater than or equal to 20MB causes buffer overflow to occur. This issue has been patched in version 11.0.27000.0915. Users who wish not to upgrade should refrain from opening files larger than 10MB.
Title BunnyPad Vulnerable to Buffer Overflow When Opening Files of Size 20MB or Greater
Weaknesses CWE-770
References
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2025-09-22T18:21:35.922Z

Reserved: 2025-09-15T19:13:16.904Z

Link: CVE-2025-59418

cve-icon Vulnrichment

Updated: 2025-09-22T18:21:28.504Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-09-22T18:15:46.740

Modified: 2025-09-22T21:22:33.590

Link: CVE-2025-59418

cve-icon Redhat

Severity : Moderate

Publid Date: 2025-09-22T18:02:45Z

Links: CVE-2025-59418 - Bugzilla