GHSA-fcfw-g3g2-2588
GitHub Security Advisory
⚠ Unreviewed
CRITICAL
Has CVE
Advisory Details
A deserialization vulnerability in the License Servlet of Fortra's GoAnywhere MFT allows an actor with a validly forged license response signature to deserialize an arbitrary actor-controlled object, possibly leading to command injection.
Related CVEs
Key Information
9.0
/10
Dataset
Last updated: October 5, 2025 6:32 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.