Skip to main content

Threats Tagged 'cve-2025-22872'

View all threats tagged with 'cve-2025-22872'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cve-2025-22872

Threats Tagged 'cve-2025-22872'

Click on any threat for detailed analysis and mitigation recommendations

0

This security update for kubevirt addresses multiple vulnerabilities fixed in version 1.7.0. The issues include logic flaws causing denial of service, improper handling of symlinks leading to arbitrary file read/write, bypass of RBAC controls via TLS certificate validation errors, and potential impersonation of privileged components. These vulnerabilities collectively pose a high risk to confidentiality, integrity, and availability of the affected system. The update also includes other bug fixes and improvements.

Join the discussion
0

This security update for Trivy addresses multiple vulnerabilities across various dependencies including hashicorp/go-getter, golang.org/x/crypto/ssh, golang.org/x/net/html, github.com/golang-jwt/jwt, and others. The fixes cover issues such as argument injection, authorization bypass, denial of service, memory consumption, information leaks, and code execution. The update also includes other non-security related fixes and dependency upgrades. No specific affected versions of Trivy are stated in the provided data.

Join the discussion

This security update addresses multiple vulnerabilities in the SUSE elemental-register and elemental-toolkit components by updating to elemental-register 1.8.1 and elemental-toolkit 2.3.2. The updates include bumps to dependencies such as github.com/rancher-sandbox/go-tpm and golang.org/x/crypto, which fix several CVEs including CVE-2025-22872, CVE-2025-47911, CVE-2025-47913, CVE-2025-47914, CVE-2025-58181, and CVE-2025-58190. No specific affected versions are provided. No CVSS score is available, but the severity is assessed as high.

Join the discussion
0

This security update for go-sendxmpp addresses multiple issues including vulnerabilities in the embedded golang.org/x/net library that could lead to performance degradation and excessive memory consumption when parsing specially crafted HTML inputs. The update also includes various feature additions and improvements across multiple versions, enhancing authentication mechanisms, error handling, and protocol support.

Join the discussion

Showing 1 to 4 of 4 results

Filters:Tag: cve-2025-22872
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses