Vendor

Gladinet

As of , 4 Gladinet vulnerabilities are on CISA's list of exploited vulnerabilities; 0 were added in 2026. Patch first: CVE-2025-11371.

Patch first

Patch first
#VulnerabilityProductOur groupListedDeadlineEPSS
1CVE-2025-11371Files or Directories Accessible to External PartiesGladinet CentreStack and TriofoxPatch this weekMetasploit module; EPSS 0.920.92
2CVE-2025-30406and Triofox Use of Hard-coded Cryptographic KeyGladinet CentreStackPatch this weekMetasploit module; EPSS 0.940.94
3CVE-2025-14611Hard Coded CryptographicGladinet CentreStack and TriofoxPatch this weekMetasploit module; EPSS 0.530.53
4CVE-2025-12480Improper Access ControlGladinet TriofoxPatch this weekEPSS 0.950.95

Products

  • CentreStack and Triofox2 entries
  • CentreStack1 entry
  • Triofox1 entry

Added each year

12342025: 4420252026: nonenone2026
Entries CISA added each year, removed ones included. Source: CISA KEV.
Show the numbers
Periodentries added
20254
2026none

Used in ransomware

Changes CISA made to these entries

  1. CVE-2025-30406 Gladinet CentreStackEdited: notes, description and name.

Every change we recorded