Patched | Globalscape Terms
Older versions may transmit administrator passwords over the network using weak, hard-coded encryption keys, making them recoverable via packet capture. Latest Patched Versions (as of May 2026)
A Denial of Service (DoS) vulnerability involving "recursive compression." Attackers can send a specially crafted packet that causes the server to crash by exhausting its stack memory. globalscape terms patched
Recent security audits by organizations like Rapid7 have uncovered several high-impact vulnerabilities in the Globalscape administration server. If your system is not running at least version , it may be vulnerable to the following: Older versions may transmit administrator passwords over the
Released March 4, 2026, for organizations remaining on the 8.2 branch. If your system is not running at least
Released March 4, 2026, which includes a patch for CVE-2025-15467.
Versions earlier than 8.0.x are largely End of Life (EOL) and no longer receive security updates.
According to the Official Globalscape Release Notes , the most secure current versions are: