Progress Kemp LoadMaster Security Update – 02 July 2026

Progress has released a security update to address multiple vulnerabilities across Progress Kemp LoadMaster.

The addressed vulnerabilities could allow the unauthenticated attacker to bypass security restrictions or execute arbitrary code on the affected system.

Sample of the addressed vulnerabilities:

Progress Kemp LoadMaster OS Command Injection Vulnerability (CVE-2026- 8037):

  • CVSS: 9.6
  • Attack Vector: Adjacent
  • Attack Complexity: Low
  • Privileges Required: None
  • User Interaction: None
  • Consequences: Remote Code Execution

It should be highlighted that security researchers disclosed a proof-of-concept (PoC) exploit that exists in the wild for the vulnerability “CVE-2026-8037”.

Vulnerabilities
  • CVE-2026-8037
  • CVE-2026-33691
Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

Progress Kemp LoadMaster Security Update

References