Progress LoadMaster: Progress LoadMaster Command Injection Vulnerability

  • Saturday, 8th August, 2026
  • 16:03pm

A security flaw has been identified in the Progress LoadMaster appliance. The vulnerability allows anyone without a valid login for the device to run unauthorized, arbitrary commands directly on it. This issue exists because the appliance does not properly check or clean input sent to its various built-in command functions, giving attackers a way to exploit the flaw. If your website uses a Progress LoadMaster appliance as part of its setup, this vulnerability could allow bad actors to access or disrupt the services tied to that device.

Source: CISA Known Exploited Vulnerabilities Catalog — https://nvd.nist.gov/vuln/detail/CVE-2026-8037

« Back