PatchSiren

Sfwebservice CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL Sfwebservice CVE published 2026-01-06

CVE-2025-39477

A Missing Authorization vulnerability in Sfwebservice InWave Jobs allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects InWave Jobs: from n/a through 3.5.8. The vulnerability has a critical CVSS score of 9.8, indicating a high severity. Defenders should prioritize verifying and updating InWave Jobs installations to prevent potential unauthorized access. The CVE record [truncated]