CVE-2026-8485: fallo de gravedad media en Progress Software MOVEit Automation
Uncontrolled Memory Allocation vulnerability in Progress Software MOVEit Automation
Publicada el
13Vexday Risk Score
Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.
ssvc Trackcvss 5.9epss 0.4%
probabilidad de explotación
0.4%top 64% de las CVE
explotación observada
noninguna fuente lo reporta
Uncontrolled Memory Allocation vulnerability in Progress Software MOVEit Automation allows Excessive Allocation.
This issue affects MOVEit Automation: before 2025.0.11, from 2025.1.0 before 2025.1.7.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Productos afectados
Progress Software · MOVEit AutomationCVEs relacionadas — Progress Software MOVEit Automation
En el mismo producto, de las más peligrosas a las menos.
CVE-2026-4670CRITICALImproper Authentication vulnerability in Progress MOVEit AutomationEPSS 0.6%CVE-2026-5174HIGHImproper Access Control Vulnerability in Progress MOVEit AutomationEPSS 0.5%CVE-2026-8486MEDIUMAllocation of resources without limits or throttling vulnerability in Progress Software MOVEit AutomationEPSS 0.5%CVE-2026-8488MEDIUMAllocation of resources without limits or throttling vulnerability in Progress Software MOVEit AutomationEPSS 0.4%CVE-2026-8487MEDIUMIncorrect default permissions vulnerability in Progress Software MOVEit AutomationEPSS 0.3%