Back to search
CVE-2025-6180
Published: Aug 20, 2025
Modified: Aug 20, 2025
PUBLISHED
Description
The StrongDM Client insufficiently protected a pre-authentication token. Attackers could exploit this to intercept and reuse the token, potentially redeeming valid authentication credentials through a race condition.
| Vendor | Product | Versions |
|---|---|---|
StrongDM | sdm-cli | affected 0 - <= 47.96.0 |
Weaknesses (CWE)
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now