Authentication Bypass in Vasion Print's Virtual Appliance Host and Application
CVE-2025-34221
Key Information:
- Vendor
Vasion
- Vendor
- CVE Published:
- 29 September 2025
What is CVE-2025-34221?
Vasion Print's Virtual Appliance Host and Application versions prior to the specified updates allow unrestricted traffic to internal Docker containers. This oversight results in a lack of required authentication, leading to unauthorized access to internal APIs. Attackers can exploit this entry point to interact with services, leading to risks such as credential theft, manipulation of configurations, and potential remote code execution. The vulnerability is commonly categorized as an authentication bypass affecting the security integrity of the product.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Print Application * < 25.2.1518
Print Virtual Appliance Host * < 25.2.169
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved
