
Critical Vulnerability in CrushFTP Exploited by Hackers for Admin Access on Unpatched Servers
A recent critical security vulnerability in CrushFTP, identified as CVE-2025-54309, is currently being exploited in the wild. This vulnerability has a CVSS score of 9.0 and affects CrushFTP versions prior to 10.8.5 and 11.3.4_23 when the DMZ proxy feature is




