Skip to content
VulniPulse
Highest advisory severityCritical 1 vendor · 2 advisories

CVE-2026-64633

CVE-2026-64633: 2 tracked advisory records across Veeam. Compare vendor sources and published fix guidance.

Compare the source-linked records below. Ratings and product/version details belong to each advisory; they are not a single CVE-wide score or proof that every listed product is affected. How VulniPulse collects and checks evidence.

Vendor advisory comparison

Veeam

2 advisories
  • Advisory severityCritical10.0

    Critical [CVE-2026-58074 +6] Vulnerabilities Resolved in Veeam ONE 13.1

    KB4892Source published

    This bulletin covers 7 CVEs. The products, versions, score and guidance below describe the bulletin; check its source for applicability to this specific CVE.

    Vulnerabilities Resolved in Veeam ONE 13.1 KB ID: 4892 Product: Published: 2026-08-04 Last Modified: Veeam Software Security Commitment Veeam® is committed to ensuring its products protect customers from potential risks. As part of that commitment, we operate a Vulnerability Disclosure Program (VDP) for all Veeam products and perform extensive internal code audits. When a vulnerability is identified, our team promptly develops a patch to address and mitigate the risk. In line with our dedication to transparency, we publicly disclose the vulnerability and provide detailed mitigation information. This approach ensures that all potentially affected customers can quickly implement the necessary measures to safeguard their systems. It’s important to note that once a vulnerability and its…

    Related products — impact not confirmed
    No product details extracted. Check the source bulletin.
    Source-reported affected versions
    • 13.0.2.6723
    Source-reported fixed versions
    • 13.1
    • 12.1
    • 12.2
    • 12.3
    Mitigation guidance
    • This vulnerability was fixed starting in the following builds:
    • Veeam ONE 13.1 (build 13.1.0.7034) Veeam ONE 13.0.2 Patch 1 (build 13.0.2.7159)
  • Advisory severityUnrated

    Advisory [CVE-2026-58074 +7] List of Security Fixes and Improvements in Veeam ONE

    KB4858Source published

    This bulletin covers 8 CVEs. The products, versions, score and guidance below describe the bulletin; check its source for applicability to this specific CVE.

    List of Security Fixes and Improvements in Veeam ONE KB ID: 4858 Product: Published: 2026-05-27 Last Modified: Purpose This article aims to provide our customers' security and compliance teams with detailed information on security improvements between releases to help them make an informed decision on whether it is critical to upgrade from their current Veeam ONE version to a later one. 13.1.0.7233 13.1.0.7034 - AutoMapper was replaced with MagicMapper 14.0.1. - Azure. Identity upgraded to version 1.17.2 - @babel/runtime upgraded to version 7.29.2 - dompurify upgraded to version 3.4.11 - ip-address upgraded to version 10.1.1 - Microsoft. IdentityModel. JsonWebTokens upgraded to version 8.17.0 - System. IdentityModel. Tokens.Jwt upgraded to version 8.17.0 - System. Private.Uri upgraded to…

    Related products — impact not confirmed
    No product details extracted. Check the source bulletin.
    Source-reported affected versions
    Affected-version details not available in this record.
    Source-reported fixed versions
    No fixed-version detail extracted. This does not mean no fix exists.
    Mitigation guidance
    • List of Security Fixes and Improvements in Veeam ONE KB ID: 4858 Product: Veeam ONE Published: 2026-05-27 Last Modified: 2026-09-09 Purpose This article describes all security-related fixes and improvements introduced in each release or update of Veeam ONE.
    • This article aims to provide our customers' security and compliance teams with detailed information on security improvements between releases to help them make an informed decision on whether it is critical to upgrade from their current Veeam ONE version to a later one.

Android app · Google Play

Monitor future Veeam CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Matching phone alertsOptional email delivery