None
ID
Patch Now: Max-Severity Fortra GoAnywhere Bug Allows Command Injection
['Kristina Beek', 'Associate Editor', 'Dark Reading']
darkreading
NEWS BRIEFFortra has released security updates for a maximum severity vulnerability found in GoAnywhere Managed File Transfer's (MFT) License Servlet.
The vulnerability is addressed in either the latest release of GoAnywhere, 7.8.4, or the Sustain Release, 7.6.3.
"Exploitation of this vulnerability is highly dependent upon systems being externally exposed to the Internet," said Fortra in the advisory.
GoAnywhere MFT is a software product designed to help businesses securely transfer files.
CVE-2025-10035 follows other high severity vulnerabilities in Fortra's GoAnywhere MFT software.
['systems'
'bug'
'transfer'
'fortra'
'allows'
'software'
'injection'
'command'
'severity'
'vulnerability'
'release'
'vulnerabilities'
'mft'
'goanywhere']