CVE-2025-13774: Progress Flowmon Anomaly Detection System

High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.

A vulnerability exists in Progress Flowmon ADS versions prior to 12.5.4 and 13.0.1 where an SQL injection vulnerability allows authenticated users to execute unintended SQL queries and commands.

Affected products

  • Progress Flowmon Anomaly Detection System: from 12.0.0, up to and including 12.5.4; from 13.0.0, up to and including 13.0.1

Published 2026-01-13. Last modified 2026-06-17.