CVE-2025-59596: Absolute Secure Access

Medium severity, CVSS 6.5. EPSS: 0.2% chance of exploitation in the next 30 days.

CVE-2025-59596 is a denial-of-service vulnerability in Secure Access Windows client versions 12.0 to 14.10 that is addressed in version 14.12. If a local networking policy is active, attackers on an adjacent network may be able to send a crafted packet and cause the client system to crash.

Affected products

  • Absolute Secure Access: from 12.00, before 14.12 (fixed in 14.12)

Published 2025-11-04. Last modified 2026-06-17.