A vulnerability marked as critical has been reported in Ashlar-Vellum Cobalt. The impacted element is an unknown function of the component CO File Parser. This manipulation causes heap-based buffer overflow.

This vulnerability is registered as CVE-2025-11464. Remote exploitation of the attack is possible. No exploit is available.