Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-32780


BleachBit cleans files to free disk space and to maintain privacy. BleachBit for Windows up to version 4.6.2 is vulnerable to a DLL Hijacking vulnerability. By placing a malicious DLL with the name uuid.dll in the folder C:\Users\<username>\AppData\Local\Microsoft\WindowsApps\, an attacker can execute arbitrary code every time BleachBit is run. This issue has been patched in version 4.9.0.


Published

2025-04-15T17:15:49.997

Last Modified

2025-04-15T18:39:27.967

Status

Awaiting Analysis

Source

[email protected]

Severity

CVSSv3.1: 7.3 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-427

Affected Vendors & Products

-


References