# CVE-2025-55174

## Summary

- **CVE ID:** CVE-2025-55174
- **Severity:** LOW
- **CVSS Score:** 3.2 (CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:N/A:N)
- **CWE:** CWE-684
- **Published:** Nov 26, 2025
- **Last Modified:** Mar 12, 2026

## Description

In KDE Skanpage before 25.08.0, an attempt at file overwrite can result in the contents of the new file at the beginning followed by the partial contents of the old file at the end, because of use of QIODevice::ReadWrite instead of QODevice::WriteOnly.

## Affected Products

- KDE — Skanpage (0)

## References

- [CNA](https://github.com/KDE/skanpage/tags)
- [CNA](https://invent.kde.org/utilities/skanpage/-/commit/de3ad2941054a26920e022dc7c4a3dc16c065b5a)
- [CNA](https://kde.org/info/security/advisory-20250811-1.txt)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.14%
- **EPSS Percentile:** 3.8

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._