CVE-2025-37094: HPE Storeonce System

Critical severity, CVSS 9.1. EPSS: 0.9% chance of exploitation in the next 30 days.

A directory traversal arbitrary file deletion vulnerability exists in HPE StoreOnce Software.

Affected products

  • HPE Storeonce System: before 4.3.11 (fixed in 4.3.11)

Published 2025-06-02. Last modified 2026-06-17.