AUGUST 24, 2026
Live Feed
Back to database
Case File

CVE-2026-10699

HIGH · CVSS 7.5 EPSS 0.34%

Source: NVD + CISA KEV + EPSS · Published 2026-07-08 · Last synced 2026-08-07

CyberRota Analysis

AI-Generated

Progress MOVEit Transfer is vulnerable due to a memory leak in the Custom Reports modules, which can lead to increased resource consumption and potential denial of service. Organizations using affected versions (from 2025.0.0 to 2025.0.8, from 2025.1.0 to 2025.1.4, and from 2026.0.0 to 2026.0.1) should prioritize patching this vulnerability to mitigate the risk of service disruption.

CVE
CVE-2026-10699
Severity
HIGH
CVSS
7.5
EPSS
0.34%

Original NVD Description

Missing release of memory after effective lifetime vulnerability in Progress MOVEit Transfer (Custom Reports modules). This issue affects MOVEit Transfer: from 2025.0.0 before 2025.0.8, from 2025.1.0 before 2025.1.4, from 2026.0.0 before 2026.0.1.

Related CVEs

Other vulnerabilities affecting the same vendor(s)