CVE-2025-1353

CVSS 2.0 Score 6 of 10 (medium)

Details

Published Feb 16, 2025
Updated: Feb 26, 2025
CWE ID 426

Summary

CVE-2025-1353 is a critical vulnerability discovered in Kong Insomnia versions up to 10.3.0. The issue lies within the library profapi.dll, and involves an untrusted search path. While local access is required for an attack, the complexity and exploitation difficulty are relatively high. The authenticity of the vulnerability is currently in question, as the vendor has been unable to reproduce the issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share