CVE-2026-2513: Possibility of unintended actions when an administrator clicks a malicious link in the Progress Flowmon ADS web application
A vulnerability exists in Progress Flowmon ADS versions prior to 12.5.5 and 13.0.3, whereby an administrator who clicks a malicious link provided by an attacker may inadvertently trigger unintended actions within their authenticated web session.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-2513?
CVE-2026-2513 has been classified with a moderate severity due to the potential for unauthorized actions via malicious links.
How do I fix CVE-2026-2513?
To mitigate CVE-2026-2513, update Progress Flowmon ADS to version 12.5.5 or later, or 13.0.3 or later.
What versions of Progress Flowmon ADS are affected by CVE-2026-2513?
CVE-2026-2513 affects Progress Flowmon ADS versions prior to 12.5.5 and 13.0.3.
What is the impact of CVE-2026-2513?
The impact of CVE-2026-2513 allows unintended actions to be executed if an administrator clicks a malicious link.
Who is at risk from CVE-2026-2513?
Administrators using vulnerable versions of Progress Flowmon ADS are at risk from CVE-2026-2513.