{"id":"CVE-2025-13670","title":"The High Level Synthesis Compiler i++ command for Windows is vulnerable to a DLL planting vulnerability","summary":"The High Level Synthesis Compiler i++ command for Windows is vulnerable to a DLL planting vulnerability","severity":"medium","cvss":6.7,"cvssVector":"CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H","cwe":["CWE-427"],"vendor":"intel","product":"high_level_synthesis_compiler","affected":["high_level_synthesis_compiler <= 24.3"],"published":"2025-12-12","updated":"2026-10-07","sourceUpdated":"2026-10-07T20:10:01.970","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-13670","references":[{"url":"https://www.altera.com/security/security-advisory/asa-0003","label":"04c0172e-9735-4a9d-a92a-fe01fa863447"}],"tags":["nvd"],"epss":0.00118,"epssPercentile":0.0155,"ingestedAt":"2026-10-07T20:46:46.871Z","slug":"CVE-2025-13670","body":"## Overview\n\nThe High Level Synthesis Compiler i++ command for Windows is vulnerable to a DLL planting vulnerability\n\n## Affected\n\n- `high_level_synthesis_compiler <= 24.3`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":37,"depthScoreParts":{"impact":36.9,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}