// 2 CRITICAL · 6 ZERO-DAY · 16 CVE · 13 EXPLOIT · 2 ADVISORY IN THE LAST 24H
CVE-2025-71414 in the TmccCore component of Apex One enables local privilege escalation to root. A patch was released in February 2026; the ZDI advisory was published on September 10.

The ZDI-26-654 advisory, published September 10, 2026, reveals a vulnerability in the core of TrendAI's endpoint agent. The TmccCore component of Apex One Security Agent contains an incomplete cleanup flaw that allows an attacker with existing limited local access to gain root privileges.

The severity stems from the nature of the affected product: software designed to isolate and control processes that, due to its own defect, amplifies the privileges of an already compromised user.

Key Takeaways
  • CVE-2025-71414 affects the TmccCore component of TrendAI Apex One Security Agent, with a local privilege escalation impact.
  • The CVSS v3 score is 7.8, vector AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H, translating a local attack condition into maximum impact on confidentiality, integrity, and availability.
  • Exploitation requires a precondition of low-privileged code execution, making the flaw relevant for post-exploitation scenarios and multi-user environments.
  • TrendAI released a fix in February 2026; the interval between the initial report (October 2025) and coordinated disclosure exceeds 11 months.

The Mechanism: When Process Termination Leaves Gaps

The flaw lies in how TmccCore handles process termination. According to the Zero Day Initiative advisory, the component exhibits a lack of proper handling of process termination: resources or state are not cleaned up correctly, creating a condition that a process running with limited privileges can exploit.

TrendAI's bulletin describes the mechanism in slightly different terms, referring to a vulnerability in handling excluded processes that allows the attacker to temporarily impersonate a trusted process. Both sources converge on the outcome: arbitrary code execution in the context of root.

The discrepancy in technical detail — generic termination versus excluded processes — does not alter the fundamental classification of the vulnerability as a Local Privilege Escalation. The TmccCore component, an integral part of the endpoint protection architecture, requires elevated privileges by nature to monitor and intervene in other processes; this elevation becomes the attack vector when control over shared resources fails.

"The specific flaw exists within the TmccCore component. The issue results from the lack of proper handling of process termination. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of root." — ZDI Advisory ZDI-26-654

From Report to Patch: A Nearly Year-Long Disclosure

The timeline documented by the ZDI advisory spans roughly 11 months. The initial vendor report is dated October 8, 2025; the coordinated release of the public advisory occurred on September 10, 2026.

During this period, TrendAI prepared and distributed the correction, included in the February 2026 patch releases. The credited researcher is Lays, handle @_L4ys, affiliated with TRAPA Security. According to the TrendAI bulletin, the researcher collaborated with the Zero Day Initiative program for coordinated disclosure.

CVSS 7.8: Why a Local Attack Earns a High Rating

The CVSS v3 score of 7.8, provided by the TrendAI security bulletin, places the vulnerability in the High band. The full vector is AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H: local attack, low complexity, low privileges required, no user interaction needed, unchanged scope, high impact on all three CIA pillars.

The combination of a low barrier to entry (only low-privileged code required) and maximum potential impact explains the classification despite the local access condition. This profile makes the vulnerability particularly dangerous in two scenarios: multi-user environments where multiple accounts share resources, and advanced compromise stages where the attacker has already gained an initial foothold.

In both cases, the LPE turns limited access into full system control, negating the barrier the endpoint agent is supposed to represent.

Remediation Steps

Enterprises using TrendAI Apex One Security Agent must verify the application of the patch included in the February 2026 release. The TrendAI security bulletin mentions build 14.0.20315 for the SaaS version.

Administrators must confirm that the agent installed on endpoint systems falls within the versions covered by the fix, verifying update status through the product's centralized management channels. Verification is a priority for systems accessible to non-privileged users, including shared servers and multi-user workstations.

The dossier does not specify exact affected versions nor clarify whether the vulnerability affects exclusively the macOS agent or other platforms as well; the ZDI advisory does not indicate a platform, while the TrendAI bulletin lists CVE-2025-71414 in the context of patches for Apex One (Mac).

The Hidden Risk in Security Components

The TmccCore vulnerability revives a recurring pattern: components that require elevated privileges to function become prime targets for escalation. When the process isolation or termination mechanism fails, the attacker exploits the very legitimate elevation of the security software.

The coordinated disclosure of ZDI-26-654, with its 11 months of management, allowed the patch to be distributed before technical details were published. The interval, however, leaves a significant window for potential targeted attacks against organizations that do not apply updates promptly.

For enterprises, the priority remains verifying patching status and monitoring for unauthorized local access, the only documented defense against exploitation of this flaw.

Information has been verified against cited sources and is current as of publication.

Sources


Sources and references
  1. zerodayinitiative.com
  2. cve.org
  3. success.trendmicro.com