iTerm2 3.5.6 through 3.5.10 before 3.5.11 sometimes allows remote attackers...
Vulnerability Description
iTerm2 3.5.6 through 3.5.10 before 3.5.11 sometimes allows remote attackers to obtain sensitive information from terminal commands by reading the /tmp/framer.txt file. This can occur for certain it2ssh and SSH Integration configurations, during remote logins to hosts that have a common Python installation.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-22275
Credits & Attribution
No credits recorded in the NVD database.
References
Affected Vendor
iTerm2
View all reports →