Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-2181

21
FAUCET Score

CVE-2025-2181 is a sensitive information disclosure vulnerability in Palo Alto Networks Checkov by Prisma Cloud. This flaw can lead to the cleartext exposure of Prisma Cloud access keys within Checkov's output, potentially compromising sensitive credentials. Rated Medium with a CVSS score of 5.9, the vulnerability has a network attack vector and low attack complexity, allowing an unauthenticated attacker to impact confidentiality. There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.

Impacted Technologies

VendorProductVersion(s)CPE
Palo Alto NetworksCheckov By Prisma Cloud
>= 3.2.0, < 3.2.449CNA affecteddefault unaffected

CVSS Data

CVSS version used by this source: 4.0

5.9MEDIUM

CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:A/VC:H/VI:N/VA:N/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:U/V:D/RE:M/U:Amber

Attack Vector
NETWORK
Attack Complexity
LOW
Attack Requirements
PRESENT
Privileges Required
NONE
User Interaction
ACTIVE
VS Confidentiality
HIGH
VS Integrity
NONE
VS Availability
NONE
SS Confidentiality
LOW
SS Integrity
LOW
SS Availability
LOW
Exploit Maturity
NOT_DEFINED
CvssVersion
4.0

Exploit Intelligence

EPSS Score
0.16%
Probability of exploitation in next 30 days
EPSS Percentile
5.3%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0016 is in the 4th percentile among its peer group of 26,236 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (18)

astropatch availablevia llm_extracted
Fixed in: 3.2.449
View patch
asustorpatch availablevia llm_extracted
Fixed in: 3.2.449
View patch
bigbluebuttonpatch availablevia llm_extracted
Fixed in: 3.2.449
coollabspatch availablevia llm_extracted
Fixed in: 3.2.449
View patch
langgeniuspatch availablevia llm_extracted
Fixed in: 3.2.449
View patch
lfedgepatch availablevia llm_extracted
Fixed in: 3.2.449
View patch
linksyspatch availablevia llm_extracted
Fixed in: 3.2.449
View patch
mattermostpatch availablevia llm_extracted
Fixed in: 3.2.449
View patch
meshtasticpatch availablevia llm_extracted
Fixed in: 3.2.449
meterspherepatch availablevia llm_extracted
Fixed in: 3.2.449
View patch
notaryprojectpatch availablevia llm_extracted
Fixed in: >= 3.2.449
View patch
nvidiapatch availablevia llm_extracted
Fixed in: 3.2.449
View patch
opensslpatch availablevia llm_extracted
Fixed in: 3.2.449
View patch
sitecorepatch availablevia llm_extracted
Fixed in: 3.2.449
View patch
strapipatch availablevia llm_extracted
Fixed in: 3.2.449
View patch
vantage6patch availablevia llm_extracted
Fixed in: 3.2.449
View patch
wazuhpatch availablevia llm_extracted
Fixed in: ['3.2.449']
View patch
paloaltovendor investigatingvia vendor_rss
View patch

Vendor Advisories (18)

paloaltopaloalto:security.paloaltonetworks.com/CVE-2025-2181LOW

CVE-2025-2181 Checkov by Prisma Cloud: Cleartext Exposure of Credentials (Severity: LOW)

Aug 13, 2025
wazuhllm-wazuh-b052f075209c6357LOW

CVE-2025-2181 Checkov by Prisma Cloud: Cleartext Exposure of Credentials

Aug 13, 2025
coollabsllm-coollabs-1e92c545519f32feLOW

CVE-2025-2181 Checkov by Prisma Cloud: Cleartext Exposure of Credentials

Aug 13, 2025
bigbluebuttonllm-bigbluebutton-7d62b481937d7c59LOW

CVE-2025-2181 Checkov by Prisma Cloud: Cleartext Exposure of Credentials

Aug 13, 2025
sitecorellm-sitecore-f9cff3975af4ca76LOW

Checkov by Prisma Cloud: Cleartext Exposure of Credentials

Aug 13, 2025
notaryprojectllm-notaryproject-1ac7c5be66cc4891LOW

CVE-2025-2181 Checkov by Prisma Cloud: Cleartext Exposure of Credentials

Aug 13, 2025
linksysllm-linksys-205a5ca8cdc48a2aLOW

Checkov by Prisma Cloud: Cleartext Exposure of Credentials

Aug 13, 2025
astrollm-astro-590d7d0be78e9b15LOW

CVE-2025-2181 Checkov by Prisma Cloud: Cleartext Exposure of Credentials

Aug 13, 2025
vantage6llm-vantage6-b1ad0efd405d7669LOW

CVE-2025-2181 Checkov by Prisma Cloud: Cleartext Exposure of Credentials

Aug 13, 2025
strapillm-strapi-aa98e4e20a96c275LOW

Checkov by Prisma Cloud: Cleartext Exposure of Credentials

Aug 13, 2025
opensslllm-openssl-50aea782f336c127LOW

Checkov by Prisma Cloud: Cleartext Exposure of Credentials

Aug 13, 2025
nvidiallm-nvidia-63973f4c6a02fba2LOW

CVE-2025-2181 Checkov by Prisma Cloud: Cleartext Exposure of Credentials

Aug 13, 2025
asustorllm-asustor-fea6d0b5a84fb95cLOW

Checkov by Prisma Cloud: Cleartext Exposure of Credentials

Aug 13, 2025
meterspherellm-metersphere-dbd7fa0c70ded37cLOW

Checkov by Prisma Cloud: Cleartext Exposure of Credentials

Aug 13, 2025
lfedgellm-lfedge-c7eda74ebf9bdef5LOW

Checkov by Prisma Cloud: Cleartext Exposure of Credentials

Aug 13, 2025
meshtasticllm-meshtastic-7025dbcce5b9557cLOW

CVE-2025-2181 Checkov by Prisma Cloud: Cleartext Exposure of Credentials

Aug 13, 2025
langgeniusllm-langgenius-4786b139038de0a2LOW

CVE-2025-2181 Checkov by Prisma Cloud: Cleartext Exposure of Credentials

Aug 13, 2025
mattermostllm-mattermost-5463fa4bfc058741LOW

Checkov by Prisma Cloud: Cleartext Exposure of Credentials

Aug 13, 2025

References

security.paloaltonetworks.com / CVE-2025-2181