CVE-2025-30401
Last modified
CVE-2025-30401 is a medium-severity vulnerability rated 6.7/10 on the CVSS scale. A spoofing issue in WhatsApp for Windows prior to version 2.2450.6 displayed attachments according to their MIME type but selected the file opening handler based on the attachment’s filename extension. A maliciously crafted mismatch could have caused the recipient to inadvertently execute arbitrary code rather than view the attachment when manually opening the attachment inside WhatsApp. EPSS estimates a 15.84% chance of exploitation in the next 30 days.
Description
A spoofing issue in WhatsApp for Windows prior to version 2.2450.6 displayed attachments according to their MIME type but selected the file opening handler based on the attachment’s filename extension. A maliciously crafted mismatch could have caused the recipient to inadvertently execute arbitrary code rather than view the attachment when manually opening the attachment inside WhatsApp. We have not seen evidence of exploitation in the wild.
Metrics
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:L
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| < 2.2450.6 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2025-30401?
How severe is CVE-2025-30401?
How do I fix CVE-2025-30401?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-30394Sensitive data storage in improperly locked memory in Remote…5.9
- CVE-2025-30397Access of resource using incompatible type ('type confusion'…7.5
- CVE-2025-30398Missing authorization in Nuance PowerScribe allows an unauth…8.1
- CVE-2025-30399Untrusted search path in .NET and Visual Studio allows an un…7.5
- CVE-2025-3040A vulnerability was found in Project Worlds Online Time Tabl…9.8
- CVE-2025-30400Use after free in Windows DWM allows an authorized attacker …7.8
- CVE-2025-30402A heap-buffer-overflow vulnerability in the loading of Execu…8.1
- CVE-2025-30403A heap-buffer-overflow vulnerability is possible in mvfst vi…8.1
- CVE-2025-30404An integer overflow vulnerability in the loading of ExecuTor…9.8
- CVE-2025-30405An integer overflow vulnerability in the loading of ExecuTor…9.8
- CVE-2025-30406Gladinet CentreStack through 16.1.10296.56315 (fixed in 16.4…9.8
- CVE-2025-30407Local privilege escalation due to a binary hijacking vulnera…6.3
Are you affected by CVE-2025-30401?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
