PROGRESS has issued a bulletin revealing ten vulnerabilities within MarkLogic Server, with some rated critical (CVSS score of 9.9). The vulnerabilities, which include authentication bypass and privilege escalation, have not been confirmed as actively exploited. Users are urged to upgrade to the latest version, 12.0.3 or 11.3.6, to mitigate these risks. The affected versions span from 11.0.0 to 12.0.1 and earlier versions. Key vulnerabilities include CVE-2026-7329 and CVE-2026-9192, both of which could grant attackers significant control over affected systems.
MarkLogic Server Security Bulletin Patches 10 Vulnerabilities, With CVSS Scores Up to 9.9
CyberSIXT Evidence Panel
Article by CyberSIXT