Daily Vuln Watch (CVE-2025-54309) - critical remote-code-execution flaw in CrushFTP 10 and 11.
Jul 26, 2025 · 4 min read · CVE-2025-54309 — What Happened, How It Works, and How to Stay Safe 1 What is CVE-2025-54309? CVE-2025-54309 is a critical remote-code-execution flaw in CrushFTP 10 and 11.If the DMZ proxy feature is not in use, an attacker can send a single HTTPS req...
Join discussion


















