CrushFTP: known exploited vulnerabilities
Entries3No. 69
Ransomware-linked1
Products1
Latest2025-07-22
Added per year
By product
3
Entries
| CVE | Vendor / product | Added | EPSS | Ransomware |
|---|---|---|---|---|
| CVE-2025-54309 | CrushFTP CrushFTP | 2025-07-22 | 95.1% | Unknown |
| CVE-2025-31161 | CrushFTP CrushFTP | 2025-04-07 | 99.9% | Known |
| CVE-2024-4040 | CrushFTP CrushFTP | 2024-04-24 | 99.5% | Unknown |
Data from CISA's Known Exploited Vulnerabilities (KEV) catalog. EPSS is FIRST's estimated probability of exploitation activity in the next 30 days, refreshed weekly. Always follow the vendor's official guidance.
About this page
CISA KEV lists 3 CrushFTP vulnerabilities (No. 69 of 288 vendors).