5.3
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Description
Server-Side Request Forgery (SSRF) vulnerability in Progress MOVEit Transfer.This issue affects MOVEit Transfer: before 2024.1.8, from 2025.0.0 before 2025.0.4.
Basic Information
ID
CVE-2025-13147
Source
ProgressSoftware
Published
Nov 19, 2025 at 20:45
Modified
Nov 19, 2025 at 20:50
Affected Product
Vendor
Progress
Product
MOVEit Transfer
Affected Versions
Progress MOVEit Transfer 0
Progress MOVEit Transfer 2025.0.0
Progress MOVEit Transfer 2025.0.0