25 Total CVEs
25 AI Analyzed
2 CISA KEV
6 Critical

Profile

8% ended up actively exploited 2 of 25 added to CISA KEV
24% rated critical (CVSS 9.0+) 6 critical, 19 high
0 with a public exploit on record positive-only index; absence is not proof

Last 12 months

19 CVEs in the last 12 months

Products

  • TrendAI Apex One12
  • TrendAI Apex One (Mac)4
  • Trend Micro Apex Central3
  • Trend Micro Apex One2
  • Trend Micro Cleaner One Pro1
  • Trend Micro Worry-Free Business Security Services1
  • Trend Micro Password Manager1
  • Trend Micro Security (Consumer)1

8 products in total

Every figure counts the high and critical CVEs CVE Brief has published for this vendor, not every CVE the vendor has ever received. Exploitation means listing in the CISA Known Exploited Vulnerabilities catalog. No patch-availability figure is shown because CVE Brief does not measure it.

All Vendors
Showing 1-25 of 25 CVEs
CVE-2026-45208
Analyzed
7.8
Trend Micro TrendAI Apex One

A time-of-check time-of-use vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations

2026-05-22
Full analysis →
CVE-2026-45207
Analyzed
7.8
Trend Micro TrendAI Apex One

An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations

2026-05-22
Full analysis →
CVE-2026-45206
Analyzed
7.8
Trend Micro TrendAI Apex One

An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations

2026-05-22
Full analysis →
CVE-2026-34930
Analyzed
7.8
Trend Micro TrendAI Apex One

An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations

2026-05-22
Full analysis →
CVE-2026-34929
Analyzed
7.8
Trend Micro TrendAI Apex One

An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations

2026-05-22
Full analysis →
CVE-2026-34928
Analyzed
7.8
Trend Micro TrendAI Apex One

An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations

2026-05-22
Full analysis →
CVE-2026-34927
Analyzed
7.8
Trend Micro TrendAI Apex One

An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations

2026-05-22
Full analysis →
CVE-2026-34926
KEV Analyzed
9.5
Trend Micro TrendAI Apex One

Trend Micro Apex One (On-Premise) Directory Traversal Vulnerability - Active in CISA KEV catalog.

2026-05-22
Full analysis →
CVE-2025-71217
Analyzed
7.8
Trend Micro TrendAI Apex One (Mac)

An origin validation error vulnerability in the Trend Micro Apex One (mac) agent self-protection mechanism could allow a local attacker to escalate pr...

2026-05-22
Full analysis →
CVE-2025-71216
Analyzed
7.8
Trend Micro TrendAI Apex One (Mac)

A time-of-check time-of-use vulnerability in the Trend Micro Apex One (mac) agent cache mechanism could allow a local attacker to escalate privileges...

2026-05-22
Full analysis →
CVE-2025-71215
Analyzed
7
Trend Micro TrendAI Apex One (Mac)

A time-of-check time-of-use vulnerability in the Trend Micro Apex One (mac) agent iCore service signature verification could allow a local attacker to...

2026-05-23
Full analysis →
CVE-2025-71214
Analyzed
7.8
Trend Micro TrendAI Apex One (Mac)

An origin validation error vulnerability in the Trend Micro Apex One (mac) agent iCore service could allow a local attacker to escalate privileges on...

2026-05-22
Full analysis →
CVE-2025-71213
Analyzed
7.8
Trend Micro TrendAI Apex One

An origin validation error vulnerability in Trend Micro Apex One could allow a local attacker to escalate privileges on affected installations

2026-05-22
Full analysis →
CVE-2025-71212
Analyzed
7.8
Trend Micro TrendAI Apex One

A link following vulnerability in the Trend Micro Apex One scan engine could allow a local attacker to escalate privileges on affected installations

2026-05-22
Full analysis →
CVE-2025-71211
Analyzed
9.8
Trend Micro TrendAI Apex One

A secondary vulnerability in the Trend Micro Apex One management console allows remote attackers to upload malicious code and execute commands.

2026-05-22
Full analysis →
CVE-2025-71210
Analyzed
9.8
Trend Micro TrendAI Apex One

A vulnerability in the Trend Micro Apex One management console allows remote attackers to upload malicious code and execute commands on affected syste...

2026-05-22
Full analysis →
CVE-2025-69260
Analyzed
7.5
Trend Micro Trend Micro Apex Central

A message out-of-bounds read vulnerability in Trend Micro Apex Central could allow a remote attacker to create a denial-of-service condition on affect...

2026-01-09
Full analysis →
CVE-2025-69259
Analyzed
7.5
Trend Micro Trend Micro Apex Central

A message unchecked NULL return value vulnerability in Trend Micro Apex Central could allow a remote attacker to create a denial-of-service condition...

2026-01-09
Full analysis →
CVE-2025-69258
Analyzed
9.8
Trend Micro Trend Micro Apex Central

A LoadLibraryEX vulnerability in Trend Micro Apex Central could allow an unauthenticated remote attacker to load an attacker-controlled DLL into a key...

2026-01-09
Full analysis →
CVE-2025-54987
Analyzed
9.4
Trend Micro Trend Micro Apex One

A vulnerability in Trend Micro Apex One (on-premise) management console could allow a pre-authenticated remote attacker to upload malicious code and e...

2025-08-05
Full analysis →
CVE-2025-54948
KEV Analyzed
9.4
Trend Micro Trend Micro Apex One

A vulnerability in Trend Micro Apex One (on-premise) management console could allow a pre-authenticated remote attacker to upload malicious code and e...

2025-08-05
Full analysis →
CVE-2025-53503
Analyzed
7.8
Trend Micro Trend Micro Cleaner One Pro

Trend Micro Cleaner One Pro is vulnerable to a Privilege Escalation vulnerability that could allow a local attacker to unintentionally delete privileg...

2025-07-11
Full analysis →
CVE-2025-53378
Analyzed
7.6
Trend Micro Trend Micro Worry-Free Business Security Services

A missing authentication vulnerability in Trend Micro Worry-Free Business Security Services (WFBSS) agent could have allowed an unauthenticated attack...

2025-07-11
Full analysis →