The discovery of an actively exploited zero-day vulnerability, CVE-2024-4040, in CrushFTP is concerning. This vulnerability allows unauthenticated attackers to bypass the user’s virtual file system (VFS) and access system files for download.
Get through updates and upcoming events, and more directly in your inbox