chiprook
← Security
SecurityOctober 1, 2026, 03:00

watchTowr finds pre-auth RCE chain in Progress ShareFile

watchTowr published an analysis of a pre-authentication remote code execution chain in Progress ShareFile, tracked as CVE-2026-2699 and CVE-2026-2701. Around the same time, Progress patched a critical authentication bypass in MOVEit Automation, CVE-2026-4670. Both flaws sit in the authentication layer rather than file handling logic.

watchTowr finds pre-auth RCE chain in Progress ShareFile
#Progress#ShareFile#MOVEit
Read next
Security

Two Unpatched Citrix NetScaler RCE Zero-Days Actively Exploited

Security

CVE-2026-8452 in Citrix NetScaler: SAML parsing overflow leads to pre-auth RCE

Security

CISA warns of critical pre-auth RCE flaw in MikroTik RouterOS

Security

N-able N-central Pre-Auth RCE Highlights RMM Concentration Risk