Trustwave's vulnerability footprint centers on a focused set of security-focused products, including web application firewalls, email protection, and secure web gateway solutions that sit within critical request-handling infrastructure. Vulnerabilities affecting the vendor skew toward serious outcomes with an elevated share reaching critical severity and a marked tendency toward public exploit availability, while the recurring weakness classes—including buffer overflows, NULL pointer dereferences, and encoding errors—reflect the parsing and memory-safety demands of inline security appliances. Defenders should prioritize updates for internet-facing gateway and filtering products, as compromise of such components can undermine downstream security controls; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Trustwave over time
Signals from CVEs in this vendor scope (18 CVEs).
18 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-18001CRITICAL Trustwave Secure Web Gateway (SWG) through 11.8.0.27 allows remote attackers to append an arbitrary public key to the device's SSH Authorized Keys data, and consequently obtain rem | Dec 31, 2017 | 9.8 | 47 | NO | YES |
CVE-2012-4528MEDIUM The mod_security2 module before 2.7.0 for the Apache HTTP Server allows remote attackers to bypass rules, and deliver arbitrary POST data to a PHP application, via a multipart requ | Dec 28, 2012 | 5.0 | 33 | NO | YES |
CVE-2009-1902MEDIUM The multipart processor in ModSecurity before 2.5.9 allows remote attackers to cause a denial of service (crash) via a multipart form datapost request with a missing part header na | Jun 3, 2009 | 5.0 | 30 | NO | YES |
CVE-2013-2765MEDIUM The ModSecurity module before 2.7.4 for the Apache HTTP Server allows remote attackers to cause a denial of service (NULL pointer dereference, process crash, and disk consumption) | Jul 15, 2013 | 5.0 | 28 | NO | YES |
CVE-2021-42717HIGH ModSecurity 3.x through 3.0.5 mishandles excessively nested JSON objects. Crafted JSON objects with nesting tens-of-thousands deep could result in the web server being unable to se | Dec 7, 2021 | 7.5 | 26 | NO | NO |
CVE-2025-47947HIGH ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. Versions up to and including 2.9.8 are vulnerable to denial of servic | May 21, 2025 | 7.5 | 25 | NO | NO |
CVE-2023-24021HIGH Incorrect handling of '\0' bytes in file uploads in ModSecurity before 2.9.7 may allow for Web Application Firewall bypasses and buffer over-reads on the Web Application Firewall w | Jan 20, 2023 | 7.5 | 25 | NO | NO |
CVE-2025-27110HIGH Libmodsecurity is one component of the ModSecurity v3 project. The library codebase serves as an interface to ModSecurity Connectors taking in web traffic and applying traditional | Feb 25, 2025 | 7.5 | 24 | NO | NO |
CVE-2022-48279HIGH In ModSecurity before 2.9.6 and 3.x before 3.0.8, HTTP multipart requests were incorrectly parsed and could bypass the Web Application Firewall. NOTE: this is related to CVE-2022-3 | Jan 20, 2023 | 7.5 | 24 | NO | NO |
CVE-2014-2727CRITICAL The STARTTLS implementation in MailMarshal before 7.2 allows plaintext command injection. | Feb 19, 2020 | 9.8 | 24 | NO | NO |
Signals from CVEs in this vendor scope (18 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Trustwave.
Media articles that mention a CVE ID that affects a product developed by Trustwave — matched by CVE ID, not by vendor name.