CVE-2024-9679: Trellix Dlp Extension

Medium severity, CVSS 5.3. EPSS: 0.4% chance of exploitation in the next 30 days.

A Hardcoded Cryptographic key vulnerability existed in DLP Extension 11.11.1.3 which allowed the decryption of previously encrypted user credentials.

Affected products

  • Trellix Dlp Extension: version 11.11.1.3 only

Published 2024-12-16. Last modified 2026-06-17.