SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-8801

LOW · CVSS 3.5 EPSS 0.34%

Source: NVD + CISA KEV + EPSS · Published 2026-07-08 · Last synced 2026-08-07

CyberRota Analysis

AI-Generated

A path equivalence vulnerability in Progress MOVEit Transfer's File Upload modules allows unauthorized access to files due to improper validation of file paths. This could lead to potential data exposure or manipulation for users operating on affected versions prior to 2025.1.4. Organizations using MOVEit Transfer should prioritize remediation to mitigate risks associated with this vulnerability.

CVE
CVE-2026-8801
Severity
LOW
CVSS
3.5
EPSS
0.34%

Original NVD Description

Path equivalence: vulnerability in Progress MOVEit Transfer (File Upload modules). This issue affects MOVEit Transfer: before 2025.0.8, from 2025.1.0 before 2025.1.4.

Related CVEs

Other vulnerabilities affecting the same vendor(s)