ctipilot.chSwitzerland · Europe · Public sector

Progress MOVEit Automation — unauthenticated auth bypass (CVSS 9.8)

cve · CVE-2026-4670

Story timeline

  1. 2026-05-06CTI Daily Brief — 2026-05-06
    active_vulnsFirst coverage. Critical unauthenticated auth bypass on MOVEit Automation backend port; no ITW at disclosure but historical precedent demands emergency treatment; CERT-FR CERTFR-2026-AVI-0532.