Gallery

Contacts

411 University St, Seattle, USA

engitech@oceanthemes.net

+1 -800-456-478-23

Progress Software has disclosed and patched CVE-2026-4670, a critical authentication bypass (CVSS 9.8) in MOVEit Automation, the managed file transfer platform widely used across enterprise and regulated-sector environments. An unauthenticated attacker with network access can bypass authentication entirely; a companion privilege escalation flaw (CVE-2026-5174) compounds the risk by enabling deeper system access post-exploitation. Given MOVEit’s history as a high-value ransomware and data theft target, organizations running this product should treat patching as an immediate operational priority.

Author

Tech Jacks Solutions