www.securityweek.com 5/22/2026, 8:21:06 AM · external

Trend Micro patches zero day Apex One flaw CVE-2026-34926

Trend Micro patches zero day Apex One flaw CVE-2026-34926
CyberSIXT Evidence Panel
CISA KEV Listed in KEV
Patch Patch Status Unknown

TRENDAI , the enterprise business of Trend Micro, has patched a zero-day vulnerability in its Apex One product, tracked as CVE-2026-34926. This medium-severity directory traversal issue can be exploited by unauthenticated local attackers with admin credentials to compromise the server. Notably, this vulnerability has been added to CISA's Known Exploited Vulnerabilities catalog, urging federal agencies to mitigate it by June 4.

TrendAI also addressed several high-severity vulnerabilities that allow local privilege escalation. Customers are advised to apply patches promptly and review access to critical systems.

View Primary Source Via www.securityweek.com

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline