Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://help.zscaler.com/zia/release-upgrade-summary-2026 |
|
Fri, 18 Sep 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A file type attribution issue in Zscaler Internet Access File Type Control evaluation rules may allow improper evaluation of File Type Control policies in rare circumstances. | |
| Title | File Type Control rule bypass | |
| Weaknesses | CWE-20 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Zscaler
Published:
Updated: 2026-09-18T14:01:10.683Z
Reserved: 2026-02-05T05:00:40.581Z
Link: CVE-2026-25684
No data.
Status : Received
Published: 2026-09-18T15:17:07.837
Modified: 2026-09-18T15:17:07.837
Link: CVE-2026-25684
No data.
OpenCVE Enrichment
No data.
-
CWE-20
Improper Input Validation