CVE-2025-1545: WatchGuard Fireware

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

An XPath Injection vulnerability in WatchGuard Fireware OS may allow a remote unauthenticated attacker to retrieve sensitive information from the Firebox configuration through an exposed authentication or management web interface. This vulnerability only affects Firebox systems that have at least one authentication hotspot configured.

Affected products

  • WatchGuard Fireware: from 2025.1, before 2025.1.3 (fixed in 2025.1.3); from 11.11, before 12.11.5 (fixed in 12.11.5); from 11.11, before 12.5.14 (fixed in 12.5.14)

Published 2025-12-04. Last modified 2026-09-25.