CVE-2025-22246: Cloudfoundry Cf-Deployment

High severity, CVSS 7.5. EPSS: 0.2% chance of exploitation in the next 30 days.

Cloud Foundry UAA release versions from v77.21.0 to v7.31.0 are vulnerable to a private key exposure in logs.

Affected products

  • Cloudfoundry Cf-Deployment: from 45.1.0, before 49.0.0 (fixed in 49.0.0)
  • Cloudfoundry Uaa Release: from 77.21.0, before 77.32.0 (fixed in 77.32.0)

Published 2025-05-13. Last modified 2026-06-17.