[Important Update] Fix for CVE-2025-59489 — Paid By Blood Steam update #723672

An employee of GMO Flatt Security Inc, RyotaK, found a vulnerability of Unity Runtime. This vulnerability affects almost all kind of version of unity...

Steam App
Paid By Blood (3950640)
Event type
patch note
Published
4 October 2025 - 03:14:04 UTC
Source
steam_community_announcements
An employee of GMO Flatt Security Inc, RyotaK, found a vulnerability of Unity Runtime. This vulnerability affects almost all kind of version of unity engine.According to one's description, this vulnerability allows malicious intents to control command line arguments passed to Unity applications, enabling attackers to load arbitrary shared libraries (.so files) and execute malicious code, depending on the platform.Unity official claims that, there is no evidence of any exploitation of the vulnerability nor has there been any impact on users or customers.Following unity official guidance, I've updated engine version, and rebuilt application.Not knowing if there's any BUG after updating, therefore I kept the old version of application. You can get the old version by accessing release_windows branch. Please notice: the old version has CVE-2025-59489 vulnerability, the consequences are at you...

Open original Steam update

Interactive charts, reviews, news, prices, and comparison tools load in the full SteamPulse app.