Critical
Low
Medium
CVE-2025-59037
Overview
DuckDB is an analytical in-process SQL database management system. On 08 September 2025, the DuckDB distribution for Node.js on npm was compromised with malware (along with several other packages). An attacker published new versions of four of DuckDB's packages that included malicious code to interf...
Critical
Low
Medium
No items found.