Known vulnerabilities in FileCatalyst Workflow
Vendor:
Fortra
Software:
FileCatalyst Workflow
Software CPE:
cpe:2.3:a:fortra:filecatalyst_workflow:*:*:*:*:*:*:*:*
Website:
https://www.goanywhere.com/
Total vulnerabilities:
5
Public exploits:
2
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU114231 - Unrestricted Upload of File with Dangerous Type CVE-2025-8450 |
CWE-434 | Medium | 5.2.0 130 | 19.08.2025 |
SB2025081962 |
||
| #VU100236 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2024-6632 |
CWE-89 | Low | 5.1.7 | 11.11.2024 |
SB2024082822 |
||
| #VU96581 - Incorrect Default Permissions CVE-2024-6633 |
CWE-276 | High | 5.1.7 | 28.08.2024 |
SB2024082822 |
||
| #VU93483 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2024-5276 |
CWE-89 | High | 5.1.6 139 | 28.06.2024 |
SB2024062825 |
||
| #VU87586 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2024-25153 |
CWE-22 | High | 5.1.6 Build 114 | 18.03.2024 |
SB2024031826 |