Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 09 Jan 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cdprojekt
Cdprojekt gog Galaxy |
|
| CPEs | cpe:2.3:a:cdprojekt:gog_galaxy:2.0.0.2:*:*:*:*:*:*:* | |
| Vendors & Products |
Cdprojekt
Cdprojekt gog Galaxy |
Thu, 06 Nov 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-599 | |
| Metrics |
cvssV3_1
|
Thu, 06 Nov 2025 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Gog
Gog galaxy |
|
| Vendors & Products |
Gog
Gog galaxy |
Wed, 05 Nov 2025 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | GOG Galaxy 2.0.0.2 suffers from Missing SSL Certificate Validation. An attacker who controls the local network, DNS, or a proxy can perform a man-in-the-middle (MitM) attack to intercept update requests and replace installer or update packages with malicious files. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-11-06T21:22:57.293Z
Reserved: 2025-08-16T00:00:00.000Z
Link: CVE-2025-56232
Updated: 2025-11-06T21:22:51.723Z
Status : Analyzed
Published: 2025-11-05T19:16:01.610
Modified: 2026-01-09T17:54:51.193
Link: CVE-2025-56232
No data.
OpenCVE Enrichment
Updated: 2025-11-06T10:06:50Z