Progress LoadMaster: Progress LoadMaster Command Injection Vulnerability

  • Sunday, 9th August, 2026
  • 04:03am

A security vulnerability has been identified in Progress LoadMaster, a tool used to manage and distribute traffic to websites. This flaw is a command injection issue, meaning unsanitized input passed to multiple command features of the tool can be exploited by unauthorized parties.

This vulnerability does not require attackers to hold any login credentials for the LoadMaster system to exploit it. If successfully used, an unauthenticated attacker could run arbitrary commands on the LoadMaster appliance that handles traffic for your website, potentially compromising the system that directs visitors to your hosted site.

Source: CISA Known Exploited Vulnerabilities Catalog — https://nvd.nist.gov/vuln/detail/CVE-2026-8037

« Back