Fortra Product Security Update Advisory (CVE-2025-10035)
Overview
We have released security updates to fix vulnerabilities in Fortra products. Users of affected products are advised to update to the latest version.
Affected Products
CVE-2025-10035
GoAnywhere MFT Versions: 7.8.4 and earlier
GoAnywhere MFT Version: 7.6.3 and earlier
Resolved Vulnerabilities
Deserialization Vulnerability in Fortra GoAnywhere MFT’s License Servlet (CVE-2025-10035)
Vulnerability Patches
Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
CVE-2025-10035
GoAnywhere MFT Version: 7.8.4
GoAnywhere MFT Version: 7.6.3
References
[1] Deserialization Vulnerability in GoAnywhere MFT’s License Servlet
https://www.fortra.com/security/advisories/product-security/fi-2025-012