CrushFTP 11 Vulnerabilities
CVE security advisories and vulnerability history for CrushFTP 11 by crushftp.
Last updated
CVE security advisories and vulnerability history for CrushFTP 11 by crushftp.
Last updated
CrushFTP 11 has 2 published CVE records since 2025, of which 2 are in CISA's Known Exploited Vulnerabilities catalog and 2 have a known public exploit. The average CVSS base score across scored CVEs is 9.7.
This page aggregates every publicly disclosed vulnerability (CVE) affecting CrushFTP 11, with a severity breakdown, the affected and patched versions, the most common weakness types, and the full CVE list.
How the CVSS severity of CrushFTP 11's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
In CISA’s Known Exploited Vulnerabilities catalog
2
2 of CrushFTP 11's CVEs are confirmed exploited in the wild.
Public exploits
2
2 of CrushFTP 11's CVEs have a known public exploit available.
Browse every CrushFTP 11 version named in a CVE, then pick one to see only the CVEs that affect it.
No specific affected versions are recorded for CrushFTP 11; the CVEs below apply to the product without a version pin.
2 CVEs
Added to CISA KEV 2025-07-22
Added to CISA KEV 2025-04-07
The CWE weakness categories most often found in CrushFTP 11 CVEs. Follow any weakness for its full explanation.
Browse vulnerabilities for other products by crushftp.
Common questions about CrushFTP 11 vulnerabilities.
Vulnerability data is sourced from the CVE Program; severity, KEV, and exploit signals are aggregated by RadicalNotion.AI.
Monitor new CrushFTP 11 vulnerabilities as they are disclosed, with AI-written analysis and remediation guidance.