vulnerability

Progress MOVEit Automation: CVE-2019-17571: Log4j vulnerabilities in MOVEit Automation

Severity
7
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:P)
Published
Dec 16, 2021
Added
Dec 13, 2024
Modified
Dec 23, 2025

Description

MOVEit Automation 2019.1, 2019.2 and 2020.0 were shipped with Log4j 1.2.17 which contains vulnerabilities. The library was never used at runtime, only distributed.

Solution

progress-moveit-automation-upgrade-latest
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.