Progress Software elevates severity of new MOVEit bug to ‘critical’ as exploit attempts jumpThe Record·Jun 26, 18:57 UTC · Jun 26, 2024RansomwareCVE-2024-580660
Progress Software fixed 2 critical severity flaws in WS_FTP ServerSecurity Affairs·Sep 30, 14:15 UTC · Sep 30, 2023VulnerabilityCVE-2023-4004460
Progress Software fixed multiple highSecurity Affairs·Feb 11, 15:40 UTC · Feb 11, 2025Exploit / PoC in the wildCVE-2024-56131CVE-2024-56132CVE-2024-56133+3 CVEs60
Progress Software Warns of “External Security Threat” to ShareFileInfosecurity Magazine·Jul 13, 12:05 UTC · Jul 13, 2026Ransomware60
Experts released PoC exploit for critical Progress Software OpenEdge bugSecurity Affairs·Mar 11, 11:51 UTC · Mar 11, 2024Exploit / PoCCVE-2024-140360
Progress Software fixed a maximum severity flaw in LoadMasterSecurity Affairs·Sep 9, 10:19 UTC · Sep 9, 2024VulnerabilityCVE-2024-759160
Progress Software fixed 2 new critical flaws in WhatsUp GoldSecurity Affairs·Sep 29, 07:43 UTC · Sep 29, 2024Exploit / PoC in the wildCVE-2024-8785CVE-2024-46909CVE-2024-46905+4 CVEs60
Progress Software fixes sneaky WAF bypass vulnerability (CVE-2026-21876)Help Net Security·Apr 22, 00:00 UTC · Apr 22, 2026VulnerabilityCVE-2026-21876CVE-2026-3517CVE-2026-3518+2 CVEs60
Progress Software fixed critical RCE CVE-2024Security Affairs·Jul 25, 20:27 UTC · Jul 25, 2024Vulnerability in the wildCVE-2024-6327CVE-2024-1800CVE-2024-4358160
Progress Software Patches High-Severity LoadMaster Flaws Affecting Multiple VersionsThe Hacker News·Feb 11, 11:52 UTC · Feb 11, 2025Vulnerability in the wildCVE-2024-56131CVE-2024-56132CVE-2024-56133+2 CVEs60
Progress Software Releases Urgent Hotfixes for Multiple Security Flaws in WS_FTP ServerThe Hacker News·Oct 9, 06:43 UTC · Oct 9, 2023Ransomware in the wildCVE-2023-40044CVE-2023-42657CVE-2023-40045+5 CVEs60
Proof-of-Concept Exploit Released for Progress Software OpenEdge VulnerabilityThe Hacker News·Mar 11, 06:28 UTC · Mar 11, 2024Exploit / PoCCVE-2024-140360
Progress Software Releases Patches for 6 Flaws in WhatsUp GoldThe Hacker News·Dec 4, 04:30 UTC · Dec 4, 2024Vulnerability in the wildCVE-2024-46905CVE-2024-46906CVE-2024-46907+4 CVEs60
Progress Software Issues Patch for Vulnerability in LoadMaster and MT HypervisorThe Hacker News·Sep 9, 09:25 UTC · Sep 9, 2024Vulnerability in the wildCVE-2024-759160
Progress fixed a third flaw in MOVEit Transfer softwareSecurity Affairs·Jun 16, 10:55 UTC · Jun 16, 2023RansomwareCVE-2023-35036CVE-2023-3436260
Another Critical Unauthenticated SQLi Flaw Discovered in MOVEit Transfer SoftwareThe Hacker News·Jul 7, 14:01 UTC · Jul 7, 2023RansomwareCVE-2023-36934CVE-2023-34362CVE-2023-36932+1 CVEs60
Three new MOVEit bugs spur CISA warning as more victims report breachesThe Record·Jul 7, 20:01 UTC · Jul 7, 2023RansomwareCVE-2023-36932CVE-2023-36933CVE-2023-3693460
Progress fixes critical RCE flaw in Telerik Report Server, upgrade ASAP! (CVE-2024-6327)Help Net Security·Jul 26, 00:00 UTC · Jul 26, 2024Vulnerability in the wildCVE-2024-6327CVE-2024-6096CVE-2024-4358+1 CVEs60
They’ve begun: Attacks exploiting vulnerability with maximum 10 severity ratingArs Technica · Security·Oct 3, 21:53 UTC · Oct 3, 2023Vulnerability in the wildCVE-2023-40044CVE-2023-4265760
Active exploitation of the MOVEit Transfer vulnerability — CVE-2023Cisco Talos·Jun 16, 18:17 UTC · Jun 16, 2023Vulnerability in the wildCVE-2023-34362CVE-2023-35036CVE-2023-3570860
PoC for Progress Telerik RCE chain released (CVE-2024-4358, CVE-2024-1800)Help Net Security·Jun 6, 10:01 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2024-4358CVE-2024-1800CVE-2023-3436260
MOVEit maker announces new critical vulnerability affecting a different file transfer toolThe Record·Sep 28, 20:45 UTC · Sep 28, 2023VulnerabilityCVE-2023-40044CVE-2023-4265760
WS_FTP flaw CVE-2023Security Affairs·Oct 2, 18:48 UTC · Oct 2, 2023Exploit / PoC in the wildCVE-2023-4004460
SEC Investigation into Progress MOVEit Hack Ends Without ChargesInfosecurity Magazine·Aug 8, 15:00 UTC · Aug 8, 2024Policy & legalCVE-2023-3436260
Security threat prompts Progress to disable ShareFile accounts, tell customers to shut down serversHelp Net Security·Jul 13, 00:00 UTC · Jul 13, 2026VulnerabilityCVE-2026-2699CVE-2026-270160
Progress Patches Critical MOVEit Automation Bug Enabling Authentication BypassThe Hacker News·May 4, 16:34 UTC · May 4, 2026Vulnerability in the wildCVE-2026-4670CVE-2026-517460
New MOVEit Transfer critical bug is actively exploitedSecurity Affairs·Jun 26, 19:54 UTC · Jun 26, 2024Vulnerability in the wildCVE-2024-5805CVE-2024-580660
State of Maine disclosed a data breach that impacted 1.3M peopleSecurity Affairs·Nov 12, 15:08 UTC · Nov 12, 2023Data breachCVE-2023-3436260
Experts found new MOVEit Transfer SQL Injection flawsSecurity Affairs·Jun 10, 20:20 UTC · Jun 10, 2023VulnerabilityCVE-2023-3436260
More than 330,000 Medicare recipients affected by MOVEit breachThe Record·Nov 17, 21:45 UTC · Nov 17, 2023Ransomware60
MOVEit Transfer zero-day attacks: The latest infoHelp Net Security·Jun 8, 10:36 UTC · Jun 8, 2026Exploit / PoC60
Critical Security Flaw in WhatsUp Gold Under Active AttackThe Hacker News·Aug 31, 15:14 UTC · Aug 31, 2024Exploit / PoC in the wildCVE-2024-4885CVE-2024-4883CVE-2024-4884+1 CVEs60
MOVEit automation flaws could enable full system compromiseSecurity Affairs·May 4, 21:32 UTC · May 4, 2026Ransomware in the wildCVE-2026-4670CVE-2026-5174CVE-2023-3436260
Exploit Attempts Recorded Against New MOVEit Transfer VulnerabilityThe Hacker News·Jul 1, 05:51 UTC · Jul 1, 2024Vulnerability in the wildCVE-2024-5806CVE-2024-5805CVE-2023-34362+3 CVEs60
Critical zero-day vulnerability in MOVEit Transfer exploited by attackers!Help Net Security·Jun 8, 10:36 UTC · Jun 8, 2026Exploit / PoC in the wildCVE-2023-066960
MOVEit Transfer zero-day was exploited by Cl0p gang (CVE-2023-34362)Help Net Security·Jun 8, 10:36 UTC · Jun 8, 2026Ransomware in the wildCVE-2023-3436260
UCLA, Siemens Energy latest MOVEit victims to confirm breachesThe Record·Jun 27, 17:43 UTC · Jun 27, 2023Ransomware60
Critical Flaw in Telerik Report Server Poses Remote Code Execution RiskThe Hacker News·Jul 27, 05:40 UTC · Jul 27, 2024Vulnerability in the wildCVE-2024-6327CVE-2024-435860
Critical MOVEit vulnerability puts huge swaths of the Internet at severe riskArs Technica · Security·Jun 26, 23:31 UTC · Jun 26, 2024VulnerabilityCVE-2024-580660
Experts warn of MOVEit Transfer tool exploitation using zeroThe Record·Jun 1, 17:35 UTC · Jun 1, 2023Ransomware60