Vulnerabilities > Cloudflare > Warp Mobile Client > 6.14

DATE CVE VULNERABILITY TITLE RISK
2022-10-28 CVE-2022-3337 Missing Authorization vulnerability in Cloudflare Warp Mobile Client
It was possible for a user to delete a VPN profile from WARP mobile client on iOS platform despite the Lock WARP switch https://developers.cloudflare.com/cloudflare-one/connections/connect-devices/warp/warp-settings/#lock-warp-switch  feature being enabled on Zero Trust Platform.
network
low complexity
cloudflare CWE-862
8.5