CVE-2025-3155: exploitation status and patch state
CVE-2025-3155 · CVSS 7.4 HIGH · EPSS 13%
A flaw was found in Yelp. The Gnome user help application allows the help document to execute arbitrary scripts. This vulnerability allows malicious users to input help documents, which may exfiltrate user files to an external environment.
Is CVE-2025-3155 exploited?
Not in the CISA KEV catalog.
EPSS puts exploitation in the next 30 days at 13%.
Public exploit code: none found in monitored sources.
Which products and versions are affected?
No affected package list recorded here yet.
Is there a patch?
No patch identifier recorded here yet.
What PlainSec published about CVE-2025-3155
PlainSec has not published a story about this CVE.