Vendor
Symantec vulnerabilities
38 advisories tracked, 1 exploited in the wild according to CISA, 6 published in 2026.
Data refreshed 10 Oct 2026
Patch now
Exploited in the last two years (CISA KEV), or a 10%+ chance of exploitation in the next 30 days (EPSS).
Nothing from Symantec meets this bar right now: no CVE in CISA's exploited list, and none with a high exploitation score.
Products covered
Select a product to see only its advisories.
- ProxySG and Edge SWGSecure web gateway, proxy, WSS agent and management5 tracked
- Endpoint Protection and EDRSEP, SES and Endpoint Detection and Response4 tracked
- Messaging GatewayEmail security gateway1 tracked
- Data Loss PreventionDLP servers and agents1 tracked
- Identity and access securityPrivileged Access Management, SiteMinder, Identity Governance and PGP Encryption27 tracked
All tracked advisories
Newest first. Full analysis marks the CVEs we've written up in depth; the rest link to an automatic summary.
| Published | CVE | Product | Issue | Severity | EPSS | Exploited |
|---|---|---|---|---|---|---|
| CVE-2026-11626 | Endpoint Protection and EDR | Local Privilege Escalation in Symantec Endpoint Protection macOS CleanWipe Removal Tool | MEDIUM 5.4 | 0.11% | – | |
| CVE-2026-3991 | Data Loss Prevention | Elevation of Privileges in Symantec Data Loss Prevention Windows Endpoint | HIGH 7.8 | 0.16% | – | |
| CVE-2026-3862 | Identity and access security | Cross-Site Scripting Vulnerability in SiteMinder Administrative UI | MEDIUM 4.6 | 0.25% | – | |
| CVE-2025-13919 | Endpoint Protection and EDR | Component Object Model (COM) Hijacking in Symantec Endpoint Protection Windows Client | MEDIUM 4.4 | 0.15% | – | |
| CVE-2025-13918 | Endpoint Protection and EDR | Elevation of Privileges in Symantec Endpoint Protection Windows Client | MEDIUM 6.7 | 0.17% | – | |
| CVE-2025-13917 | ProxySG and Edge SWG | Elevation of Privileges in Web Security Services (WSS) Agent | HIGH 7 | 0.10% | – | |
| CVE-2025-8661 | Identity and access security | Stored Cross-Site Scripting in Symantec PGP Encryption 11.0.1 | MEDIUM 4.6 | 0.19% | – | |
| CVE-2025-8660 | Identity and access security | Privilege Escalation in Symantec PGP Encryption 11.0.1 | MEDIUM 5.6 | 0.30% | – | |
| CVE-2025-24507 | Identity and access security | This vulnerability allows appliance compromise at boot time. | HIGH 8.9 | 0.18% | – | |
| CVE-2025-24506 | Identity and access security | A specific authentication strategy allows to learn ids of PAM users associated with certain authentication… | MEDIUM 5.3 | 0.24% | – | |
| CVE-2025-24505 | Identity and access security | This vulnerability allows a high-privileged authenticated PAM user to achieve remote command execution on t… | HIGH 8.8 | 0.29% | – | |
| CVE-2025-24504 | Identity and access security | An improper input validation the CSRF filter results in unsanitized user input written to the application l… | MEDIUM 5.3 | 0.23% | – | |
| CVE-2025-24503 | Identity and access security | A malicious actor can fix the session of a PAM user by tricking the user to click on a specially crafted li… | CRITICAL 9.3 | 0.24% | – | |
| CVE-2025-24502 | Identity and access security | An improper session validation allows an unauthenticated attacker to cause certain request notifications to… | MEDIUM 5.3 | 0.22% | – | |
| CVE-2025-24501 | Identity and access security | An improper input validation allows an unauthenticated attacker to alter PAM logs by sending a specially cr… | MEDIUM 5.3 | 0.29% | – | |
| CVE-2025-24500 | Identity and access security | The vulnerability allows an unauthenticated attacker to access information in PAM database. | HIGH 8.7 | 0.23% | – | |
| CVE-2024-38496 | Identity and access security | Symantec Privileged Access Manager Insecure Direct Object Reference vulnerability | MEDIUM 5.1 | 0.25% | – | |
| CVE-2024-38495 | Identity and access security | Symantec Privileged Access Manager User Enumeration vulnerability | MEDIUM 5.3 | 0.28% | – | |
| CVE-2024-38494 | Identity and access security | Symantec Privileged Access Manager Remote Command Execution vulnerability | HIGH 8.6 | 0.61% | – | |
| CVE-2024-38493 | Identity and access security | Symantec Privileged Access Manager Reflected Cross Site Scripting vulnerability | MEDIUM 6.8 | 0.30% | – | |
| CVE-2024-38492 | Identity and access security | Symantec Privileged Access Manager Remote Command Execution vulnerability | CRITICAL 9.4 | 0.94% | – | |
| CVE-2024-38491 | Identity and access security | Symantec Privileged Access Manager SQL Injection vulnerability | HIGH 8.4 | 0.28% | – | |
| CVE-2024-36458 | Identity and access security | Symantec Privileged Access Manager Privilege Escalation vulnerability | MEDIUM 5.1 | 0.20% | – | |
| CVE-2024-36457 | Identity and access security | Symantec Privileged Access Manager Authentication Bypass vulnerability | MEDIUM 5.3 | 0.29% | – | |
| CVE-2024-36456 | Identity and access security | Symantec Privileged Access Manager Remote Command Execution vulnerability | CRITICAL 9.4 | 0.94% | – | |
| CVE-2024-36455 | Identity and access security | Symantec Privileged Access Manager Remote Command Execution vulnerability | CRITICAL 9.4 | 0.47% | – | |
| CVE-2024-36459 | Identity and access security | Cross-Site Scripting Vulnerability in Symantec SiteMinder Web Agent | HIGH 8.4 | 0.42% | – | |
| CVE-2023-23957 | Identity and access security | Open Redirection Vulnerability in Symantec Identity Portal 14.4 | – | 0.32% | – | |
| CVE-2023-23952 | ProxySG and Edge SWG | Advanced Secure Gateway and Content Analysis, prior to 7.3.13.1 / 3.1.6.0, may be susceptible to a Command Injection in Advanced Secure Gateway, Content Analysis | CRITICAL 9.8 | 1.3% | – | |
| CVE-2023-23953 | ProxySG and Edge SWG | Advanced Secure Gateway and Content Analysis, prior to 7.3.13.1 / 3.1.6.0, may be susceptible to an Elevati… | HIGH 7.8 | 0.19% | – | |
| CVE-2023-23954 | ProxySG and Edge SWG | Advanced Secure Gateway and Content Analysis, prior to 7.3.13.1 / 3.1.6.0, may be susceptible to a Stored C… | MEDIUM 5.4 | 0.34% | – | |
| CVE-2023-23955 | ProxySG and Edge SWG | Advanced Secure Gateway and Content Analysis, prior to 7.3.13.1 / 3.1.6.0, may be susceptible to a Server-S… | HIGH 8.1 | 0.47% | – | |
| CVE-2023-23956 | Identity and access security | A user can supply malicious HTML and JavaScript code that will be executed in the client browser | MEDIUM 6.1 | 3.1% | – | |
| CVE-2023-23949 | Identity and access security | An authenticated user can supply malicious HTML and JavaScript code that will be executed in the client bro… | HIGH 8.1 | 0.56% | – | |
| CVE-2023-23950 | Identity and access security | User’s supplied input (usually a CRLF sequence) can be used to split a returning response into two responses. | MEDIUM 6.1 | 0.51% | – | |
| CVE-2023-23951 | Identity and access security | Ability to enumerate the Oracle LDAP attributes for the current user by modifying the query used by the app… | MEDIUM 6.1 | 0.51% | – | |
| CVE-2022-25631 | Endpoint Protection and EDR | Symantec Endpoint Protection, prior to 14.3 RU6 (14.3.9210.6000), may be susceptible to a Elevation of Privilege in Symantec Endpoint Protection | HIGH 7.8 | 0.17% | – | |
| CVE-2017-6327 | Messaging Gateway | Messaging Gateway Remote Code Execution | HIGH 8.8 | 36% | Yes |
Sources: Symantec security advisories, CISA KEV and FIRST EPSS. Severity is the vendor's own rating.