Medium severityNVD Advisory· Published Aug 13, 2025· Updated Jun 17, 2026
CVE-2025-2180
CVE-2025-2180
Description
An unsafe deserialization vulnerability in Palo Alto Networks Checkov by Prisma® Cloud allows an authenticated user to execute arbitrary code as a non administrative user by scanning a malicious terraform file when using Checkov in Prisma® Cloud.
This issue impacts Checkov 3.0 versions earlier than Checkov 3.2.415.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <3.2.415
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.