CVE-2024-25091: J's Communications Co., Ltd Revoworks Browser

Critical severity, CVSS 9.1. EPSS: 0.5% chance of exploitation in the next 30 days.

Protection mechanism failure issue exists in RevoWorks SCVX prior to scvimage4.10.21_1013 (when using 'VirusChecker' or 'ThreatChecker' feature) and RevoWorks Browser prior to 2.2.95 (when using 'VirusChecker' or 'ThreatChecker' feature). If data containing malware is saved in a specific file format (eml, dmg, vhd, iso, msi), malware may be taken outside the sandboxed environment.

Affected products

Published 2024-03-01. Last modified 2026-06-17.