VYPR
Unrated severityNVD Advisory· Published Jul 8, 2026· Updated Jul 9, 2026

Institution scope bypass vulnerability in custom reports

CVE-2026-8649

Description

Improper Neutralization of Special Elements in Data Query Logic vulnerability in Progress MOVEit Transfer (Custom Reports modules).

This issue affects MOVEit Transfer: before 2025.0.7, from 2025.1.0 before 2025.1.3.

Affected products

1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.