Unknown [CVE-2026-58074 +2] Release Information for Veeam ONE 12 and Updates
This security Veeam advisory covers CVE-2026-58074 and CVE-2026-64631 and 1 more CVE.
Android app · Google Play
Monitor future Veeam CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Summary
Release Information for Veeam ONE 12 and Updates
KB ID: 4705
Product:
Published: 2024-12-23
Last Modified: 2026-08-25
Veeam ONE v12 Releases
12.3.0.7165
What's New
Veeam ONE 12.3 Patch 1 is a cumulative maintenance and security update for Veeam ONE 12.3. It resolves reported issues across reporting, monitoring, alarms, licensing, and integrations, adds REST API and ServiceNow enhancements, and addresses externally reported security vulnerabilities.
Applying this patch is recommended for all Veeam ONE 12.3 deployments.
New Features and Improvements
Cloud Backup Sizes in the REST API
The public REST API now reports the size of cloud backups and of their restore points.
AWS Account Identification
Veeam ONE now collects the AWS Account ID and account alias for workloads protected by Veeam Backup for AWS, and the public REST API returns both for protected Amazon EC2 workloads.
Customizable ServiceNow Short Description
Resolved Issues
- Veeam ONE repeatedly logs an error because triggered alarms are not synchronized correctly between the alarm cache and the database: Cannot insert the value NULL into column 'triggered_alarm_id'
- The Backup Copy RPO alarm reports incorrect information because deleted backup copy workers are still taken into account.
- The Backup Job State alarm does not raise a Warning when a backup job session finishes with a warning.
Affected versions
No affected-version range was extracted from the source record. The vendor advisory is authoritative — check it before change work.
Official advisory · medium-confidence parse· fetched 39 minutes ago·verify at source
- 12.3.0.4670
Official advisory · medium-confidence parse· fetched 39 minutes ago·verify at source
Mitigation checklist
- Release Information for Veeam ONE 12 and Updates KB ID: 4705 Product: Veeam ONE | 12 | 12.1 | 12.2 | 12.3 Published: 2024-12-23 Last Modified: 2026-08-25 Veeam ONE v12 Releases 12.3.0.7165 2026-08-25 What's New Veeam ONE 12.3 Patch 1 is a cumulative maintenance and security update for Veeam ONE 12.3.
- Applying this patch is recommended for all Veeam ONE 12.3 deployments.
- The Tape GFS Backup Files report fails when the report data exceeds the database column length limit, with the error: Unable to load dataset 'dsSummary' The Capacity Planning for Backup Repositories report calculates incorrect values for S3-compatible object storage repositories.
- The Custom Infrastructure report truncates guest OS names that exceed the database column length limit.
- The Backups on Repository report shows invalid last backup dates after an upgrade of Veeam Backup & Replication.
- Installation and Upgrade Installing a Veeam ONE patch (.msp) from the command line in unattended mode fails with the error: User name could not be empty Alarms exported from Veeam ONE 12.2 cannot be imported into Veeam ONE 12.3.
- The Veeam ONE service fails to start with an entity cache error: Entity not found Download Information Veeam ONE 12.3 Patch 1 is distributed as a ZIP archive containing three.msp patch installers, which update an existing 12.3 deployment in place.
- No ISO image is released for this patch.
Official advisory · medium-confidence parse· fetched 39 minutes ago·verify at source
Discussion(0)
No comments yet. Share field notes, upgrade gotchas, or questions — verify against the vendor advisory before acting on community advice.
Sign in to join the discussion.