What is CVE-2026-15967?
CVE-2026-15967 is an insufficient session expiration vulnerability in Progress MOVEit Transfer. This could allow unauthorized access due to improperly terminated user sessions. Affected versions include those before 2025.1.5 and from 2026.0.0 before 2026.0.3; immediate update is recommended.
Azərbaycanca: CVE-2026-15967, Progress MOVEit Transfer məhsulunda qeyri-kafi sessiya müddəti zəifliyidir. Bu, istifadəçi sessiyalarının düzgün bağlanmamasına səbəb olaraq icazəsiz giriş riski yaradır. Təsirə məruz qalan versiyalar 2025.1.5-dən əvvəlki və 2026.0.0 ilə 2026.0.3 arasındakı versiyalardır; dərhal göstərilən versiyalara yeniləmə tövsiyə olunur.
Related CVEs
link basis: shared vendor: Progress
FAQ2
Which product is affected by CVE-2026-15967?
This vulnerability affects the Progress MOVEit Transfer product.
Which versions should I update to protect against this vulnerability?
Versions before 2025.1.5 and from 2026.0.0 before 2026.0.3 are affected. Immediate update to these versions is recommended.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.