📦 Warp

by Cloudflare

🔍 What is Warp?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-0651

HIGH CVSS 7.1 Jan 22, 2025

A privilege escalation vulnerability in Cloudflare WARP for Windows allows low-privileged users to create symbolic links that cause the WARP service (running as SYSTEM) to delete arbitrary files when ...

CVE-2023-2754

HIGH CVSS 7.4 Aug 3, 2023

The Cloudflare WARP client for Windows incorrectly assigns Unique Local IPv6 addresses instead of loopback addresses for DNS servers when connected over IPv6 networks. This allows attackers on the sam...

CVE-2023-1862

HIGH CVSS 7.3 Jun 20, 2023

The Cloudflare WARP client for Windows had an insecure IPC Named Pipe that allowed unauthorized remote access. This enabled attackers to trigger WARP connection/disconnection commands and extract netw...

CVE-2023-0652

HIGH CVSS 7.0 Apr 6, 2023

This vulnerability allows local attackers to escalate privileges by exploiting hardlink creation during the Cloudflare WARP client repair process. Attackers can forge hardlink destinations to overwrit...

CVE-2022-2225

HIGH CVSS 8.1 Jul 26, 2022

CVE-2022-2225 allows non-admin users to bypass Cloudflare WARP's Zero Trust security policies by using warp-cli subcommands to disable network interfaces. This affects organizations using Cloudflare W...