What it is
CVE-2025-6965 is Integer Truncation on SQLite. There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a...
Vulnerability report
Integer Truncation on SQLite
SQLite / SQLite · affected before V5.8
Decision summary
Direct answers before the deeper technical record.
What it is
CVE-2025-6965 is Integer Truncation on SQLite. There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a...
Is it exploited?
No. Previdian has not recorded active exploitation signals yet.
Who is affected?
SQLite / SQLite affected before v5.8.
What should we do?
Track for updates. Assess relevance to your asset inventory and enrichment workflows.
Overview
There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a memory corruption issue.
We recommend upgrading to version 3.50.2 or above.
Exploitation evidence
Catalogues and sources that list this CVE as a known exploited vulnerability, when available.
No exploitation evidence rows are recorded for this CVE yet.
Detection
Make the evidence actionable in scanner, SOC, and edge-control workflows.
Request targets and User-Agents available in Pro. Callback host details available in Enterprise.
No scanner integrations recorded yet.
No Previdian virtual patch is currently available. Future rules ship for ModSecurity, Cloudflare, and AWS WAF.
Learn about virtual patches →No detection artifacts or sensor request patterns are available for this CVE yet.
Check back as sensor telemetry and scanner integrations are updated.
Risk and context
CVSS v4.0
CVSS:4.0/AV:N/AC:H/AT:P/PR:L/UI:N/VC:L/VI:H/VA:L/SC:L/SI:H/SA:L/S:N/AU:N/R:U/V:D/RE:L/U:Green
EPSS
—
Timeline
Vulnerability disclosed publicly
Identifier reserved by the CNA
Pro API
Confidence, exploit status, sensor telemetry, PoCs, scanner integrations, mentions, and tags are available programmatically for VM, SOC, and CTI workflows.
GET /api/v2/pro/kevs/CVE-2025-6965
Free JSON includes basic KEV fields{
"cve_id": "CVE-2025-6965",
"confidence": null,
"cvss_score": 7.2,
"cvss_estimated": false,
"epss_score": null,
"exploit_status": {
"exploited_in_the_wild": false,
"active_exploitation_observed": false
},
"sensor_telemetry": { "attempts": 0, "sensors": 0 }
}