Back to feed

ConnectWise patches critical ScreenConnect authentication flaw after five days

1 min
ConnectWise patches critical ScreenConnect authentication flaw after five days

This digest was compiled by AI from multiple sources — links to the originals are below.

ConnectWise released a security update for ScreenConnect on Sept. 8, five days after warning customers of a critical authentication flaw. The vulnerability, CVE-2026-84869, allowed unauthorized file transfer and execution through active remote sessions. The patch is included in ScreenConnect client version 26.6.5 and later.

Key Facts

  • ConnectWise warned customers about the ScreenConnect vulnerability on Sept. 3, 2026.
  • The vulnerability is tracked as CVE-2026-84869.
  • The patch is included in ScreenConnect client version 26.6.5 and later.
  • Admins were advised to remove the 'TransferFiles' permission from users with open sessions as a temporary mitigation.

Vulnerability Disclosure

ConnectWise alerted customers on Sept. 3, 2026, that support and access sessions in ConnectWise Remote Access could allow files to be transferred and executed without authorization or confirmation. The flaw was assigned CVE-2026-84869. As a temporary workaround, administrators were instructed to log in and remove the 'TransferFiles' permission from any users with an open session.

Patch Release

ConnectWise issued the security update on Sept. 8, 2026, five days after the initial warning. The fix is included in ScreenConnect client version 26.6.5 and all subsequent versions. The company did not disclose whether the vulnerability had been exploited in the wild.

2 sources

Time · lag behind first