ConnectWise Releases Security Update for ScreenConnect
Successful exploitation of CVE-2026-84869 may allow unauthorised file transfer and execution through an active ScreenConnect remote session
Summary
Successful exploitation of CVE-2026-84869 may allow unauthorised file transfer and execution through an active ScreenConnect remote session
Affected platforms
The following platforms are known to be affected:
Threat details
Introduction
ConnectWise has released a security update to address a vulnerability in ConnectWise ScreenConnect.
- CVE-2026-84869 - Missing Authorisation / Improper Privilege Management vulnerability - CVSSv3.1 score: 9.9
ConnectWise rate this vulnerability as "1 High", which indicates it is either being targeted or at higher risk of being targeted by exploits in the wild.
Remediation advice
Affected organisations are encouraged to review ConnectWise's ScreenConnectâ„¢ 26.6.5 Security Patch advisory and apply the relevant updates as soon as possible.
Definitive source of threat updates
Last edited: 9 September 2026 12:13 pm