CrushFTP 10 Vulnerabilities
CVE security advisories and vulnerability history for CrushFTP 10 by crushftp.
Last updated
CVE security advisories and vulnerability history for CrushFTP 10 by crushftp.
Last updated
CrushFTP 10 has 2 published CVE records since 2025, of which 2 are in CISA's Known Exploited Vulnerabilities catalog and 2 have a known public exploit. The average CVSS base score across scored CVEs is 9.7.
This page aggregates every publicly disclosed vulnerability (CVE) affecting CrushFTP 10, with a severity breakdown, the affected and patched versions, the most common weakness types, and the full CVE list.
How the CVSS severity of CrushFTP 10's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
In CISA’s Known Exploited Vulnerabilities catalog
2
2 of CrushFTP 10's CVEs are confirmed exploited in the wild.
Public exploits
2
2 of CrushFTP 10's CVEs have a known public exploit available.
Browse every CrushFTP 10 version named in a CVE, then pick one to see only the CVEs that affect it.
No specific affected versions are recorded for CrushFTP 10; the CVEs below apply to the product without a version pin.
2 CVEs
Added to CISA KEV 2025-07-22
Added to CISA KEV 2025-04-07
The CWE weakness categories most often found in CrushFTP 10 CVEs. Follow any weakness for its full explanation.
Browse vulnerabilities for other products by crushftp.
Common questions about CrushFTP 10 vulnerabilities.
Vulnerability data is sourced from the CVE Program; severity, KEV, and exploit signals are aggregated by RadicalNotion.AI.
Monitor new CrushFTP 10 vulnerabilities as they are disclosed, with AI-written analysis and remediation guidance.