CVE-2025-12694: Forcepoint VPN Client

High severity, CVSS 7.8. EPSS: 0.1% chance of exploitation in the next 30 days.

A local privilege escalation vulnerability exists in Forcepoint VPN Client that allows a local non-administrative user to escalate privileges to SYSTEM. This issue affects VPN Client for Windows: versions 6.11.3 and prior.

Affected products

  • Forcepoint VPN Client: before 6.11.3 (fixed in 6.11.3)

Published 2026-06-04. Last modified 2026-07-22.