Unrated severityNVD Advisory· Published Nov 19, 2025· Updated Nov 19, 2025
External Service Interaction (DNS)
CVE-2025-13147
Description
Server-Side Request Forgery (SSRF) vulnerability in Progress MOVEit Transfer.This issue affects MOVEit Transfer: before 2024.1.8, from 2025.0.0 before 2025.0.4.
Affected products
2- Range: <2024.1.8, >=2025.0.0 <2025.0.4
- Progress/MOVEit Transferv5Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.