{"api_version":"v1","generated_at":"2026-10-08T04:05:00+00:00","product":{"cve_count":9,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-connectwise-screenconnect-6387c054bdd5","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"ScreenConnect","next_cursor":null,"observations":[{"affected":"ScreenConnect: All versions prior to 26.6.5","affected_versions_present":true,"cve_id":"CVE-2026-84869","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-84869","fixed":"Cloud: Updated to the latest release. We recommend that; partners reinstall their host clients https://docs.connectwise.com/ScreenConnect_Documentation/Get_started/Host_client/Reinstall_the_host_client and update their access agents https://docs.connectwise.com/ScreenConnect_Documentation/Get_started/Host_page/Reinstall_and_upgrade_an_access_agent .; On-prem: Upgrade to ScreenConnect client version 26.6.5 or later.; Automate-integrated ScreenConnect deployments: Automate partners are eligible to update their integrated; on-premises ScreenConnect installation as long as their Automate Assurance; subscription is active. Automate partners should apply the ScreenConnect 26.6.5 update through Automate; Product Updates.","last_modified":"2026-09-12T03:55:19.450Z","patch_url":"https://www.connectwise.com/company/trust/security-bulletins/2026-09-08-screenconnect-bulletin","primary_source":"","published":"2026-09-08T19:29:33.630Z"},{"affected":"All versions prior to 26.2","affected_versions_present":true,"cve_id":"CVE-2026-11596","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-11596","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-06-10T18:18:41.537Z","patch_url":"https://github.com/ConnectWise-Advisories/Disclosures/tree/main/CVE-2026-11596","primary_source":"","published":"2026-06-10T17:15:07.586Z"},{"affected":"All server versions prior to 26.1","affected_versions_present":true,"cve_id":"CVE-2026-3564","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-3564","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-09T17:20:18.051Z","patch_url":"","primary_source":"","published":"2026-03-17T14:48:59.940Z"},{"affected":"ScreenConnect (all supported versions) when used with the Certificate Signing Extension versions prior to 1.0.12","affected_versions_present":true,"cve_id":"CVE-2025-14823","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-14823","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-12-18T16:04:17.893Z","patch_url":"","primary_source":"","published":"2025-12-18T15:50:06.929Z"},{"affected":"All versions prior to 2025.8","affected_versions_present":true,"cve_id":"CVE-2025-14265","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-14265","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-26T16:21:03.963Z","patch_url":"https://www.connectwise.com/company/trust/security-bulletins/screenconnect-2025.8-security-patch","primary_source":"","published":"2025-12-11T14:21:53.234Z"},{"affected":"ScreenConnect: <25.2.3","affected_versions_present":true,"cve_id":"CVE-2025-3935","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-3935","fixed":"Cloud: No action is required.; On-premises: Upgrade to the latest stable version.; Details and guidance can be found here:; ScreenConnect 25.2.4 Security Patch https://www.connectwise.com/company/trust/security-bulletins/screenconnect-security-patch-2025.4","last_modified":"2026-02-26T18:28:01.567Z","patch_url":"https://www.connectwise.com/company/trust/security-bulletins/screenconnect-security-patch-2025.4","primary_source":"","published":"2025-04-25T18:27:44.244Z"},{"affected":"ScreenConnect: \u2264 23.9.7","affected_versions_present":true,"cve_id":"CVE-2024-1709","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-1709","fixed":"The Cyber Centre strongly recommends that organizations patch any ScreenConnect systems immediately. ConnectWise recommends updating impacted products to version 23.9.8 Footnote 2 . The vendor states cloud partners are remediated against both vulnerabilities reported on February 19. Organizations should also review and implement the Cyber Centre\u2019s Top 10 IT Security Actions Footnote 3 with an emphasis on the following topics: Consolidating, monitoring, and defending Internet gateways. Patching operating systems and applications. Isolate web-facing applications. Should activity matching the content of this alert be discovered, recipients are encouraged to report via the My Cyber Portal , or email contact@cyber.gc.ca .","last_modified":"2025-10-21T23:05:24.008Z","patch_url":"https://www.cyber.gc.ca/en/alerts-advisories/vulnerabilities-impacting-connectwise-screenconnect","primary_source":"","published":"2024-02-21T15:36:03.960Z"},{"affected":"ScreenConnect: \u2264 23.9.7","affected_versions_present":true,"cve_id":"CVE-2024-1708","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-1708","fixed":"The Cyber Centre strongly recommends that organizations patch any ScreenConnect systems immediately. ConnectWise recommends updating impacted products to version 23.9.8 Footnote 2 . The vendor states cloud partners are remediated against both vulnerabilities reported on February 19. Organizations should also review and implement the Cyber Centre\u2019s Top 10 IT Security Actions Footnote 3 with an emphasis on the following topics: Consolidating, monitoring, and defending Internet gateways. Patching operating systems and applications. Isolate web-facing applications. Should activity matching the content of this alert be discovered, recipients are encouraged to report via the My Cyber Portal , or email contact@cyber.gc.ca .","last_modified":"2026-08-04T03:55:56.405Z","patch_url":"https://www.cyber.gc.ca/en/alerts-advisories/vulnerabilities-impacting-connectwise-screenconnect","primary_source":"","published":"2024-02-21T15:29:10.091Z"},{"affected":"22.7 < 22.6*","affected_versions_present":true,"cve_id":"CVE-2022-36781","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-36781","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-16T20:16:20.390Z","patch_url":"","primary_source":"","published":"2022-09-28T19:11:20.650Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"ConnectWise"}}
