Welltend Security Vulnerabilities (CVE)
Explore vulnerabilities and security advisories affecting Welltend products.
2 known CVE vulnerabilities tracked
Critical
1
High
1
Medium
0
Low
0
None
0
Vulnerabilities By Year
Products Affected
All Welltend CVEs
CVE-2025-15228
9.8
critical
BPMFlowWebkit developed by WELLTEND TECHNOLOGY has a Arbitrary File Upload vulnerability, allowing unauthenticated remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.
Bpmflowwebkit
Dec 29, 2025
CVE-2025-15227
7.5
high
BPMFlowWebkit developed by WELLTEND TECHNOLOGY has a Arbitrary File Read vulnerability, allowing unauthenticated remote attackers to exploit Absolute Path Traversal to download arbitrary system files.
Bpmflowwebkit
Dec 29, 2025