CVE-2025-22246: Cloudfoundry Cf-Deployment
High severity, CVSS 7.5. EPSS: 0.2% chance of exploitation in the next 30 days.
Cloud Foundry UAA release versions from v77.21.0 to v7.31.0 are vulnerable to a private key exposure in logs.
Affected products
- Cloudfoundry Cf-Deployment: from 45.1.0, before 49.0.0 (fixed in 49.0.0)
- Cloudfoundry Uaa Release: from 77.21.0, before 77.32.0 (fixed in 77.32.0)
Published 2025-05-13. Last modified 2026-06-17.