CVE-2026-8673: Avantra

Critical severity, CVSS 9.1. EPSS: 0.3% chance of exploitation in the next 30 days.

Unprotected transport of credentials vulnerability in syslink software AG Avantra on Linux, Windows allows Sniffing Attacks. This issue affects Avantra: before 25.3.0.

Affected products

  • Avantra Avantra: before 25.3.0 (fixed in 25.3.0)

Published 2026-05-22. Last modified 2026-07-23.