CVE-2025-0651

Name
CVE-2025-0651
Description
Improper Privilege Management vulnerability in Cloudflare WARP on Windows allows File Manipulation. User with a low system privilegesĀ  can create a set of symlinks inside theĀ C:\ProgramData\Cloudflare\warp-diag-partials folder. After triggering the 'Reset all settings" option the WARP service will delete the files that the symlink was pointing to. Given the WARP service operates with System privileges this might lead to deleting files owned by the System user. This issue affects WARP: before 2024.12.492.0.
NVD Severity
unknown
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
cna@cloudflare.com https://developers.cloudflare.com/warp-client/

Match rules

CPE URI Source package Min version Max version
warp >= 0 < 2024.12.492.0
cpe:2.3:a:cloudflare:warp:*:*:*:*:*:windows:*:* warp >= None < 2024.12.492.0

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
warp edge-community 0.9.2-r1 knuxify <knuxify@gmail.com> possibly vulnerable
warp edge-community 0.9.2-r0 knuxify <knuxify@gmail.com> possibly vulnerable
warp edge-community 0.9.0-r0 knuxify <knuxify@gmail.com> possibly vulnerable
warp edge-community 0.8.1-r0 knuxify <knuxify@gmail.com> possibly vulnerable
warp edge-community 0.8.0-r1 knuxify <knuxify@gmail.com> possibly vulnerable
warp edge-community 0.8.0-r0 knuxify <knuxify@gmail.com> possibly vulnerable
warp 3.23-community 0.9.2-r1 knuxify <knuxify@gmail.com> possibly vulnerable
warp 3.22-community 0.9.2-r0 knuxify <knuxify@gmail.com> possibly vulnerable
warp 3.22-community 0.8.0-r0 knuxify <knuxify@gmail.com> possibly vulnerable