---
id: CVE-2025-10932
title: >-
  Uncontrolled Resource Consumption vulnerability in Progress MOVEit Transfer
  (AS2 module).This issue affects MOVEit Transfer: from 2025.0.0 before
  2025.0.3, from 2024.1.0 before 2024.1.7, from 2023.1.0 before 2023.1.16.
summary: >-
  Uncontrolled Resource Consumption vulnerability in Progress MOVEit Transfer
  (AS2 module).This issue affects MOVEit Transfer: from 2025.0.0 before
  2025.0.3, from 2024.1.0 before 2024.1.7, from 2023.1.0 before 2023.1.16.
severity: high
cvss: 8.2
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H'
cwe:
  - CWE-400
published: '2025-10-29'
updated: '2026-10-08'
sourceUpdated: '2026-10-08T11:10:00.250'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-10932'
references:
  - url: >-
      https://community.progress.com/s/article/MOVEit-Transfer-Vulnerability-CVE-2025-10932-October-29-2025
    label: security@progress.com
tags:
  - nvd
epss: 0.00483
epssPercentile: 0.39629
ingestedAt: '2026-10-08T11:31:27.679Z'
---

## Overview

Uncontrolled Resource Consumption vulnerability in Progress MOVEit Transfer (AS2 module).This issue affects MOVEit Transfer: from 2025.0.0 before 2025.0.3, from 2024.1.0 before 2024.1.7, from 2023.1.0 before 2023.1.16.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
