CVE-2025-49155: Trend Micro Apex One
High severity, CVSS 8.8. EPSS: 0.9% chance of exploitation in the next 30 days.
An uncontrolled search path vulnerability in the Trend Micro Apex One Data Loss Prevention module could allow an attacker to inject malicious code leading to arbitrary code execution on affected installations.
Affected products
- Trend Micro Apex One: before 14.0.14492 (fixed in 14.0.14492); from 14.0.0.12994, before 14.0.0.14002 (fixed in 14.0.0.14002)
Published 2025-06-17. Last modified 2026-06-17.