CVE-2025-22868

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Feb 26, 2025
CWE ID 1286

Summary

CVE-2025-22868 is a newly discovered vulnerability that allows an attacker to exploit a malformed token during parsing, leading to unexpected memory consumption. This issue can result in denial-of-service attacks or potentially more serious consequences, such as data corruption or system crashes. An attacker can take advantage of this vulnerability by sending a specially crafted token to the affected system, causing it to allocate and consume excessive memory resources. Organizations using the affected software are urged to apply the necessary patches or updates as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share