VDB
CGA-mv2w-xh84-rcx7
CGA-mv2w-xh84-rcx7
REJECTED
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Chainguard | tensorflow-gpu-jupyter | 0, 0, 0 |
Exploit Intelligence
- Liquid1998/Variatype.htb-CVE-2025-66034 (github-poc-repo)
- Proof-of-concept exploit for CVE-2025-66034 in the fontTools variable font generation pipeline. A crafted .designspace file allows control of the output path, enabling arbitrary file writes. The script automates payload creation, font generation, and upload to demonstrate the issue. (github-poc-repo)
- v3cn4x00/POC-CVE-2025-66034 (github-poc-repo)
- CVE-2025-66034 - fontTools varLib Arbitrary File Write → RCE PoC exploit for an Arbitrary File Write + XML Injection vulnerability in fontTools.varLib. (github-poc-repo)
- CVE-2025-66034 exploit and documentation (github-poc-repo)
- jwsly12/CVE-2025-66034-htb-ctf (github-poc-repo)
- jwsly12/CVE-2025-66034-htb-ctf (github-poc)
- CVE-2025-66034 - fontTools varLib Arbitrary File Write → RCE PoC exploit for an Arbitrary File Write + XML Injection vulnerability in fontTools.varLib. (github-poc)
- v3cn4x00/POC-CVE-2025-66034 (github-poc)
- CVE-2025-66034 exploit and documentation (github-poc)
…and 3 more exploits
Timeline
- Jan 28, 2026 CVE Rejected