Skip to content
Signals
NVD · CVE-2026-64604 · In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updating CR8NVD · CVE-2026-64603 · In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2ffcda1NVD · CVE-2026-64602 · In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoung ChuNVD · CVE-2026-64601 · In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on eachCISA KEV · CVE-2026-20349 · Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Heap Inspection Vulnerability · Added 2026-08-11 · Due 2026-08-14CISA KEV · CVE-2026-68820 · Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability · Added 2026-08-11 · Due 2026-08-25NVD · CVE-2026-64604 · In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updating CR8NVD · CVE-2026-64603 · In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2ffcda1NVD · CVE-2026-64602 · In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoung ChuNVD · CVE-2026-64601 · In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on eachCISA KEV · CVE-2026-20349 · Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Heap Inspection Vulnerability · Added 2026-08-11 · Due 2026-08-14CISA KEV · CVE-2026-68820 · Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability · Added 2026-08-11 · Due 2026-08-25

Vendors · trendmicro

trendmicro

· 40 Critical

Total CVEs

571

Critical

40

Products

106

Search All CVEs →

571

Products (106)

apex one176 CVEsofficescan71 CVEsworry-free business security58 CVEsapex central35 CVEsinterscan web security virtual appliance29 CVEsworry-free business security services25 CVEscontrol manager22 CVEsmobile security21 CVEsemail encryption gateway19 CVEsserverprotect18 CVEsinternet security17 CVEsdeep security agent15 CVEspassword manager15 CVEspremium security13 CVEsinterscan messaging security virtual appliance13 CVEssmart protection server13 CVEsmaximum security13 CVEsmaximum security 202012 CVEsantivirus12 CVEsthreat discovery appliance12 CVEspremium security 202011 CVEsinternet security 202011 CVEshousecall9 CVEstrend micro endpoint encryption9 CVEssecurity8 CVEstrend micro antivirus8 CVEsmaximum security 20198 CVEspremium security 20197 CVEsinternet security 20197 CVEsdeep security7 CVEshousecall for home networks7 CVEsmaximum security 20227 CVEsantivirus \+ security6 CVEsscanmail6 CVEsantivirus\+6 CVEsantivirus\+ security 20206 CVEsdeep discovery inspector6 CVEshome network security5 CVEsvulnerability protection5 CVEstrend vision one5 CVEsantivirus \+ security 20195 CVEsantivirus for mac 20175 CVEsantivirus for mac 20185 CVEsantivirus for mac 20195 CVEsmaximum security 20215 CVEsdeep security manager4 CVEsofficescan cloud4 CVEsserverprotect for storage4 CVEsendpoint sensor3 CVEsantivirus\+ 20203 CVEsantivirus\+ security 20213 CVEsdeep discovery director3 CVEsinternet security 20213 CVEsinterscan messaging security suite3 CVEsofficescan business security3 CVEspremium security 20213 CVEsserverprotect for network appliance filer3 CVEssafe lock2 CVEsantivirus \+ security 20202 CVEsmaximum security 20232 CVEscloud edge2 CVEsofficescan xg2 CVEsantivirus\+ 20192 CVEsim security2 CVEsanti-threat toolkit2 CVEsdeep discovery email inspector2 CVEsportable security2 CVEsantivirus one2 CVEsinterscan web security suite2 CVEsdr. safety2 CVEspremium security 20221 CVEspremium security 20231 CVEsransom buster1 CVEsrootkit buster1 CVEscleaner one1 CVEsscanmail for ibm domino1 CVEsbusiness security1 CVEssecurity for best buy1 CVEsapex one as a service1 CVEsserverprotect for network appliance filers1 CVEsantivirus toolkit1 CVEsantivirus for mac1 CVEstmeext.sys1 CVEsantivirus\+ security 20231 CVEstrend micro internet security1 CVEsantivirus\+ security 20221 CVEstxone stellarone1 CVEsvirtual mobile infrastructure1 CVEsvpn1 CVEsvpn proxy one1 CVEsvpn proxy one pro1 CVEsinternet security 20231 CVEsinternet security 20101 CVEsinternet security 20221 CVEsid security1 CVEsair support1 CVEsendpoint application control1 CVEsencryption for email1 CVEsantivirus\+ security1 CVEsofficescan business security service1 CVEsdeep security as a service1 CVEsofficescan monthly1 CVEsonline scan1 CVEsportal protect1 CVEsdeep discovery analyzer1 CVEsclient server messaging suite1 CVEs

Recent Vulnerabilities

View all 571
CVE-2026-45208HIGH 7.8

A time-of-check time-of-use vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

CVE-2026-45207HIGH 7.8

An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. This is similar to CVE-2026-45206 but exists in a different process protection communication mechanism. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

CVE-2026-45206HIGH 7.8

An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. This is similar to CVE-2026-45207 but exists in a different process protection communication mechanism. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

CVE-2026-34930HIGH 7.8

An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. This is similar to CVE-2026-34927 but exists in a different process protection mechanism. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

CVE-2026-34929HIGH 7.8

An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. This is similar to CVE-2026-34927 but exists in a different inter-process communication mechanism. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

CVE-2026-34928HIGH 7.8

An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. This is similar to CVE-2026-34927 but exists in a different named pipe communication mechanism. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

CVE-2026-34927HIGH 7.8

An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

CVE-2026-34926MEDIUM 6.7KEV

A directory traversal vulnerability in the Apex One (on-premise) server could allow a pre-authenticated local attacker to modify a key table on the server to inject malicious code to deploy to agents on affected installations. This vulnerability is only exploitable on the on-premise version of Apex One and a potential attacker must have access to the Apex One Server and already obtained administrative credentials to the server via some other method to exploit this vulnerability.

CVE-2025-71213HIGH 7.8

An origin validation error vulnerability in Trend Micro Apex One could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

CVE-2025-71212HIGH 7.8

A link following vulnerability in the Trend Micro Apex One scan engine could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

CVE-2025-71211CRITICAL 9.8

A vulnerability in the Trend Micro Apex One management console could allow a remote attacker to upload malicious code and execute commands on affected installations. This vulnerability is similar in scope to CVE-2025-71210 but affects a different executable. Please note: although this vulnerability carries a technical critical CVSS rating, this was reported via responsible disclosure via a researcher through the Zero Day Initiative. The SaaS versions of the product have already been mitigated and no customer action required. For this particular vulnerability, an attacker must have access to the Trend Micro Apex One Management Console, so customers that have their console�s IP address exposed externally should consider mitigating factors such as source restrictions if not already applied.

CVE-2025-71210CRITICAL 9.8

A vulnerability in the Trend Micro Apex One management console could allow a remote attacker to upload malicious code and execute commands on affected installations. Please note: although this vulnerability carries a technical critical CVSS rating, this was reported via responsible disclosure via a researcher through the Zero Day Initiative. The SaaS versions of the product have already been mitigated and no customer action required. For this particular vulnerability, an attacker must have access to the Trend Micro Apex One Management Console, so customers that have their console�s IP address exposed externally should consider mitigating factors such as source restrictions if not already applied.

CVE-2025-69260HIGH 7.5

A message out-of-bounds read vulnerability in Trend Micro Apex Central could allow a remote attacker to create a denial-of-service condition on affected installations. Please note: authentication is not required in order to exploit this vulnerability.

CVE-2025-69259HIGH 7.5

A message unchecked NULL return value vulnerability in Trend Micro Apex Central could allow a remote attacker to create a denial-of-service condition on affected installations. Please note: authentication is not required in order to exploit this vulnerability..

CVE-2025-69258CRITICAL 9.8

A LoadLibraryEX vulnerability in Trend Micro Apex Central could allow an unauthenticated remote attacker to load an attacker-controlled DLL into a key executable, leading to execution of attacker-supplied code under the context of SYSTEM on affected installations.

CVE-2025-54987CRITICAL 9.4

A vulnerability in Trend Micro Apex One (on-premise) management console could allow a pre-authenticated remote attacker to upload malicious code and execute commands on affected installations. This vulnerability is essentially the same as CVE-2025-54948 but targets a different CPU architecture.

CVE-2025-54948CRITICAL 9.4KEV

A vulnerability in Trend Micro Apex One (on-premise) management console could allow a pre-authenticated remote attacker to upload malicious code and execute commands on affected installations.

CVE-2025-53503HIGH 7.8

Trend Micro Cleaner One Pro is vulnerable to a Privilege Escalation vulnerability that could allow a local attacker to unintentionally delete privileged Trend Micro files including its own.

CVE-2025-53378HIGH 7.6

A missing authentication vulnerability in Trend Micro Worry-Free Business Security Services (WFBSS) agent could have allowed an unauthenticated attacker to remotely take control of the agent on affected installations. Also note: this vulnerability only affected the SaaS client version of WFBSS only, meaning the on-premise version of Worry-Free Business Security was not affected, and this issue was addressed in a WFBSS monthly maintenance update. Therefore no other customer action is required to mitigate if the WFBSS agents are on the regular SaaS maintenance deployment schedule and this disclosure is for informational purposes only.

CVE-2025-52837HIGH 7.8

Trend Micro Password Manager (Consumer) version 5.8.0.1327 and below is vulnerable to a Link Following Privilege Escalation Vulnerability that could allow an attacker the opportunity to abuse symbolic links and other methods to delete any file/folder and achieve privilege escalation.

CVE-2025-52521HIGH 7.8

Trend Micro Security 17.8 (Consumer) is vulnerable to a link following local privilege escalation vulnerability that could allow a local attacker to unintentionally delete privileged Trend Micro files including its own.

CVE-2025-49385HIGH 7.8

Trend Micro Security 17.8 (Consumer) is vulnerable to a link following local privilege escalation vulnerability that could allow a local attacker to unintentionally delete privileged Trend Micro files including its own.

CVE-2025-49384HIGH 7.8

Trend Micro Security 17.8 (Consumer) is vulnerable to a link following local privilege escalation vulnerability that could allow a local attacker to unintentionally delete privileged Trend Micro files including its own.

CVE-2025-49218HIGH 7.7

A post-auth SQL injection vulnerability in the Trend Micro Endpoint Encryption PolicyServer could allow an attacker to escalate privileges on affected installations. This is similar to, but not identical to CVE-2025-49215. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system to exploit this vulnerability.

CVE-2025-49217CRITICAL 9.8

An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a pre-authentication remote code execution on affected installations. Note that this vulnerability is similar to CVE-2025-49213 but is in a different method.