ConnectWise Releases Security Update for ScreenConnect
Successful exploitation of CVE-2026-84869 may allow unauthorised file transfer and execution through an active ScreenConnect remote session
Summary
Successful exploitation of CVE-2026-84869 may allow unauthorised file transfer and execution through an active ScreenConnect remote session
Affected platforms
The following platforms are known to be affected:
Threat details
Exploitation of CVE-2026-84869
CVE-2026-84869 has been added to the US Cybersecurity and Infrastructure Security Agency's (CISA) Known Exploited Vulnerabilities (KEV) Catalog.
The NHS England National CSOC assesses further exploitation as almost certain.
Introduction
ConnectWise has released a security update to address a vulnerability in ConnectWise ScreenConnect.
- CVE-2026-84869 - Missing Authorisation / Improper Privilege Management vulnerability - CVSSv3.1 score: 9.9
ConnectWise rate this vulnerability as "1 High", which indicates it is either being targeted or at higher risk of being targeted by exploits in the wild.
Threat updates
| Date | Update |
|---|---|
| 14 Sep 2026 | Exploitation of CVE-2026-84869 |
Remediation advice
Affected organisations are encouraged to review ConnectWise's ScreenConnectâ„¢ 26.6.5 Security Patch advisory and apply the relevant updates as soon as possible.
Definitive source of threat updates
Last edited: 14 September 2026 1:09 pm