CVE-2022-2225
EUVD-2022-3450526.07.2022, 12:15
By using warp-cli subcommands (disable-ethernet, disable-wifi), it was possible for a user without admin privileges to bypass configured Zero Trust security policies (e.g. Secure Web Gateway policies) and features such as 'Lock WARP switch'.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| cloudflare | warp | 𝑥 < 2022.5.227.0 |
| cloudflare | warp | 𝑥 < 2022.5.341.0 |
| cloudflare | warp | 𝑥 < 2022.5.346 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration