Skip to content
Critical Vulnerability in FileZen App Allows Arbitrary Command Execution

Critical Vulnerability in FileZen App Allows Arbitrary Command Execution

First seen 16 Feb 2026, 13:09 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •March 12, 2026 at 16:10 UTC

A critical vulnerability, tracked as CVE-2026-25108, has been identified in the FileZen file transfer application from Soliton Systems K.K. This OS command injection flaw has a CVSS v3.0 base score of 8.8, allowing attackers to execute arbitrary commands on affected systems. The vulnerability was published on February 13, 2026.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 212d ago How this analysis works

Timeline

2026-02-13
CVE-2026-25108 published
2026-02-16
Articles published detailing the vulnerability

More articles in this cluster (4)

Following this threat?

Track CVE-2026-25108 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed