CVE-2025-47729MEDIUM 4.9CISA KEVEPSS p31.3%
CVE-2025-47729TeleMessage TM SGNL Hidden Functionality Vulnerability
TeleMessage / TM SGNL
Description
TeleMessage TM SGNL contains a hidden functionality vulnerability in which the archiving backend holds cleartext copies of messages from TM SGNL application users.
Scoring
| CVSS 3.1 | 4.9 (MEDIUM) |
| Vector | CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N |
| EPSS | 0.40% probability of exploitation · percentile 31.3% · 2026-06-19T12:03:05Z |
| Published | 2025-05-08 |
| Last modified | 2025-11-05 |
CISA KEV entry
Added to KEV: 2025-05-12
Underlying weaknesses· 1
References
- https://arstechnica.com/security/2025/05/signal-clone-used-by-trump-official-stops-operations-after-report-it-was-hacked/
- https://news.ycombinator.com/item?id=43909220
- https://www.theregister.com/2025/05/05/telemessage_investigating/
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-47729
1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Hidden Functionalitycwe-912 | 0% | live |
(incoming)1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| KEVEntry | TeleMessage TM SGNL Hidden Functionality Vulnerabilitykev-cve-2025-47729 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.