Security
Loading…

CVE-2025-55177

UNKNOWNKnown Exploited
Description

Meta Platforms WhatsApp contains an incorrect authorization vulnerability due to an incomplete authorization of linked device synchronization messages. This vulnerability could allow an unrelated user to trigger processing of content from an arbitrary URL on a target’s device.

Timeline
Published:September 2nd, 2025 12:00 AM
Last modified:September 2nd, 2025 12:00 AM
Added to KEV:September 2nd, 2025
CVSS Scoring

No CVSS v3 score available

Affected Software
From NVD CPE configuration data

Vendors

Meta Platforms

Products

WhatsApp
Weaknesses (CWE)
References & Reports
Advisories, patches, and third-party reports

No references available.

Source: CISA KEV + NVD · Data may lag official sources by up to one minute