# CVE-2025-47736

## Summary

- **CVE ID:** CVE-2025-47736
- **Severity:** LOW
- **CVSS Score:** 2.9 (CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L)
- **CWE:** CWE-228
- **Published:** May 9, 2025
- **Last Modified:** Mar 13, 2026

## Description

dialect/mod.rs in the libsql-sqlite3-parser crate through 0.13.0 before 14f422a for Rust can crash if the input is not valid UTF-8.

## Affected Products

- gwenn — libsql-sqlite3-parser (0)

## References

- [CNA](https://github.com/tursodatabase/libsql/issues/2052)
- [CNA](https://github.com/gwenn/lemon-rs/issues/86)
- [CNA](https://github.com/gwenn/lemon-rs/pull/8)
- [CNA](https://crates.io/crates/libsql-sqlite3-parser)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.25%
- **EPSS Percentile:** 15.9

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-11._