CVE-2026-2701: Progress ShareFile Storage Zones Controller

High severity, CVSS 8.8. EPSS: 3.4% chance of exploitation in the next 30 days.

Authenticated user can upload a malicious file to the server and execute it, which leads to remote code execution.

Affected products

  • Progress ShareFile Storage Zones Controller: from 5.0.0, before 5.12.4 (fixed in 5.12.4)

Published 2026-04-02. Last modified 2026-06-17.