<?xml version="1.0" encoding="UTF-8"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>WildforTech Security Advisories — Soliton Systems K.K</title><description>Actively exploited vulnerabilities affecting Soliton Systems K.K products.</description><link>https://wildfortech.com</link><atom:link href="https://wildfortech.com/security/vendor/soliton-systems-k-k.xml" rel="self" type="application/rss+xml"/><item><title>CVE-2026-25108 — Soliton Systems K.K FileZen OS Command Injection Vulnerability</title><link>https://wildfortech.com/security#CVE-2026-25108</link><guid isPermaLink="true">https://wildfortech.com/security#CVE-2026-25108</guid><description>FileZen, a file-sharing appliance from Soliton Systems, contains an OS command injection flaw that can be triggered after a user logs in and sends a specially crafted HTTP request. This means an authenticated attacker could execute arbitrary operating system commands on the underlying server, potentially leading to full system compromise, data theft, or use as a pivot point within the network. The vulnerability has been added to CISA&apos;s Known Exploited Vulnerabilities catalog, indicating active exploitation.</description><pubDate>Tue, 24 Feb 2026 00:00:00 GMT</pubDate><category>Soliton Systems K.K</category><category>FileZen</category></item></channel></rss>