Workspace
This hub aggregates every CVE we track for Workspace, a product in the cloud saas space. Use it to gauge the current risk picture and drill into individual advisories.
19
CVEs tracked
1
Critical
10
High
1
In CISA KEV
Severity distribution
HIGH10MEDIUM8CRITICAL1
Monthly trend
3
0
0
0
0
0
0
1
0
1
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Workspace.
- CVE-2025-4879Citrix Workspace App for Windows - Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges7.8
- CVE-2023-42404OneVision Workspace before WS23.1 SR1 (build w31.040) allows arbitrary Java EL execution.4.9
- CVE-2024-7890Local privilege escalation allows a low-privileged user to gain SYSTEM privileges7.3
- CVE-2024-7889Local privilege escalation allows a low-privileged user to gain SYSTEM privileges7.3
- CVE-2024-42423Citrix Workspace App version 23.9.0.24.4 on Dell ThinOS 2311 contains an Incorrect Authorization vulnerability when Citrix CEB is enabled for WebLogin. A local unauthenticated user with low privile...6.1
- CVE-2024-6149Redirection of users to a vulnerable URL in Citrix Workspace app for HTML56.1
- CVE-2024-6148Bypass of GACS Policy Configuration settings in Citrix Workspace app for HTML58.8
- CVE-2024-6286Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges7.8
- CVE-2024-2241Improper access control in the user interface in Devolutions Workspace 2024.1.0 and earlier allows an authenticated user to perform unintended actions via specific permissions 6.3
- CVE-2023-6588 Offline mode is always enabled, even if permission disallows it, in Devolutions Server data source in Devolutions Workspace 2023.3.2.0 and earlier. This allows an attacker with access to the W...6.5
- CVE-2023-24486Local user access to a system where another user is utilizing a vulnerable version of Citrix Workspace App for Linux to launch published desktops and applications5.5
- CVE-2023-2257Authentication Bypass in Hub Business integration in Devolutions Workspace Desktop 2023.1.1.3 and earlier on Windows and macOS allows an attacker with access to the user interface to unlock a Hub ...7.8
- CVE-2023-24485Privilege Escalation on the system running a vulnerable version of Citrix Workspace app for Windows7.8
- CVE-2023-24484A malicious user can cause log files to be written to a directory that they do not have permission to write to.5.5
- CVE-2022-47412ONLYOFFICE Workspace Search Stored XSS5.4
Product normalization is registry-driven with AI assist and human review. How it works