CVE Database
/

CVE-2026-2737

Back to search

CVE-2026-2737

Published: Apr 2, 2026

Modified: Apr 3, 2026

PUBLISHED

Description

A vulnerability exists in Progress Flowmon versions prior to 12.5.8 and 13.0.6, whereby an administrator who clicks a malicious link provided by an attacker may inadvertently trigger unintended actions within their authenticated web session.

VendorProductVersions

Progress Software

Flowmon

affected
Flowmon 12 versions prior to 12.5.8
affected
Flowmon 13 versions prior to 13.0.6

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now