CVE-2024-7345: Progress Openedge

Critical severity, CVSS 9.6. EPSS: 0.6% chance of exploitation in the next 30 days.

Local ABL Client bypass of the required PASOE security checks may allow an attacker to commit unauthorized code injection into Multi-Session Agents on supported OpenEdge LTS platforms up to OpenEdge LTS 11.7.18 and LTS 12.2.13 on all supported release platforms

Affected products

  • Progress Openedge: up to and including 11.7.18; from 12.0, up to and including 12.2.13

Published 2024-09-03. Last modified 2026-06-17.