CVE-2025-7012: Cato Networks Cato Client
High severity, CVSS 8.6. EPSS: 0.2% chance of exploitation in the next 30 days.
An issue in Cato Networks' CatoClient for Linux, before version 5.5, allows a local attacker to escalate privileges to root by exploiting improper symbolic link handling.
Affected products
- Cato Networks Cato Client: from 5.0, before 5.5 (fixed in 5.5)
Published 2025-07-13. Last modified 2026-06-17.