PatchSiren

Forcepoint CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Forcepoint CVE published 2026-06-04

CVE-2025-12694

A local privilege escalation vulnerability exists in Forcepoint VPN Client for Windows, affecting versions 6.11.3 and prior. This vulnerability allows a local non-administrative user to escalate privileges to SYSTEM, with a CVSS score of 8.5 and a HIGH severity rating.

MEDIUM Forcepoint CVE published 2026-03-16

CVE-2025-2274

CVE-2025-2274 is a MEDIUM-severity vulnerability (CVSS Score: 4.8) affecting Forcepoint Web Security (On-Prem) on Windows. The issue, published on [cvePublishedAt](https://www.cve.org/CVERecord?id=CVE-2025-2274) and last modified on [cveModifiedAt](https://nvd.nist.gov/vuln/detail/CVE-2025-2274), is related to Improper Neutralization of Input During Web Page Generation, allowing for Stored Cross-Site Scri [truncated]