CVE-2025-7012: Cato Networks Cato Client

High severity, CVSS 8.6. EPSS: 0.2% chance of exploitation in the next 30 days.

An issue in Cato Networks' CatoClient for Linux, before version 5.5, allows a local attacker to escalate privileges to root by exploiting improper symbolic link handling.

Affected products

Published 2025-07-13. Last modified 2026-06-17.