CVE-2025-7958: Trellix Network Security Nx, Ex, Fx, Ax, And CMS

High severity, CVSS 7.1. EPSS: 0.3% chance of exploitation in the next 30 days.

A Code Injection vulnerability existed in Trellix Network Security CM and NX. A locally authenticated admin user can execute arbitrary code using the web interface and Alert artifact details.

Affected products

  • Trellix Trellix Network Security Nx, Ex, Fx, Ax, And CMS: version 10.0.4 only

Published 2026-06-26. Last modified 2026-09-29.