CVE-2025-32919: Checkmk
High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.
Use of an insecure temporary directory in the Windows License plugin for the Checkmk Windows Agent allows Privilege Escalation. This issue affects Checkmk: from 2.4.0 before 2.4.0p13, from 2.3.0 before 2.3.0p38, from 2.2.0 before 2.2.0p46, and all versions of 2.1.0 (EOL).
Affected products
- Checkmk Checkmk: from 2.1.0, before 2.2.0 (fixed in 2.2.0); version 2.2.0 only; version 2.3.0 only; version 2.4.0 only
Published 2025-10-09. Last modified 2026-06-17.