CVE-2025-65199
EUVD-2025-20258410.12.2025, 19:16
A command injection vulnerability exists in Windscribe for Linux Desktop App that allows a local user who is a member of the windscribe group to execute arbitrary commands as root via the 'adapterName' parameter of the 'changeMTU' function. Fixed in Windscribe v2.18.3-alpha and v2.18.8.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| windscribe | windscribe | 2.10.1 ≤ 𝑥 ≤ 2.17.10 |
| windscribe | windscribe | 2.18.1:alpha |
| windscribe | windscribe | 2.18.3 |
| windscribe | windscribe | 2.18.5 |
𝑥
= Vulnerable software versions
References