Forcepoint One DLP Client, version 23.04.5642 (and possibly newer versions), includes a restricted version of Python 2.5.4 that prevents use of the ctypes library. ctypes is a foreign function interface (FFI) for Python, enabling calls to DLLs/shared libraries, memory allocation, and direct code execution. It was demonstrated that these restrictions could be bypassed.
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 07 Jan 2026 10:45:00 +0000

Type Values Removed Values Added
First Time appeared Forcepoint
Forcepoint one Endpoint
Vendors & Products Forcepoint
Forcepoint one Endpoint

Tue, 06 Jan 2026 17:30:00 +0000

Type Values Removed Values Added
References

Tue, 06 Jan 2026 16:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-1104
CWE-1395
CWE-676
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 06 Jan 2026 15:00:00 +0000

Type Values Removed Values Added
Description Forcepoint One DLP Client, version 23.04.5642 (and possibly newer versions), includes a restricted version of Python 2.5.4 that prevents use of the ctypes library. ctypes is a foreign function interface (FFI) for Python, enabling calls to DLLs/shared libraries, memory allocation, and direct code execution. It was demonstrated that these restrictions could be bypassed.
Title Vulnerable Python version used in Forcepoint One DLP Client
References

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: certcc

Published:

Updated: 2026-01-06T16:04:41.042Z

Reserved: 2025-12-04T13:44:38.515Z

Link: CVE-2025-14026

cve-icon Vulnrichment

Updated: 2026-01-06T15:20:24.266Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-01-06T15:15:42.057

Modified: 2026-01-08T18:09:23.230

Link: CVE-2025-14026

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-01-07T10:36:26Z