CVE-2025-30680: Trend Micro Apex Central
High severity, CVSS 7.1. EPSS: 0.3% chance of exploitation in the next 30 days.
A Server-side Request Forgery (SSRF) vulnerability in Trend Micro Apex Central (SaaS) could allow an attacker to manipulate certain parameters leading to information disclosure on affected installations. Please note: this vulnerability only affects the SaaS instance of Apex Central - customers that automatically apply Trend Micro's monthly maintenance releases to the SaaS instance do not have to take any further action.
Affected products
- Trend Micro Apex Central: before 2025-03-01 (fixed in 2025-03-01)
Published 2025-06-17. Last modified 2026-06-17.