CVE-2024-25091: J's Communications Co., Ltd Revoworks Browser
Critical severity, CVSS 9.1. EPSS: 0.5% chance of exploitation in the next 30 days.
Protection mechanism failure issue exists in RevoWorks SCVX prior to scvimage4.10.21_1013 (when using 'VirusChecker' or 'ThreatChecker' feature) and RevoWorks Browser prior to 2.2.95 (when using 'VirusChecker' or 'ThreatChecker' feature). If data containing malware is saved in a specific file format (eml, dmg, vhd, iso, msi), malware may be taken outside the sandboxed environment.
Affected products
- J's Communications Co., Ltd Revoworks Browser: before 2.2.95 (fixed in 2.2.95)
- J's Communications Co., Ltd Revoworks Scvx
- Jscom Revoworks Browser: before 2.2.95 (fixed in 2.2.95)
- Jscom Revoworks Scvx: before 4.10.21_1013 (fixed in 4.10.21_1013)
Published 2024-03-01. Last modified 2026-06-17.