Certain HP LaserJet Pro, HP LaserJet Enterprise, and HP LaserJet Managed Printers may potentially be vulnerable to Remote Code Execution and Elevation of Privilege when processing a PostScript print job.
Conclusion & alert: CVE-2025-26507 is rated Moderate Risk (52.8/100): CVSS Medium severity, with medium exploitation likelihood (EPSS 2.45%). Mandatory action: Review affected assets and schedule remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-04-11 | 4.66% | 2.45% | -2.20% |
| 2 | 2026-04-01 | 6.09% | 4.66% | -1.44% |
| 3 | 2026-03-25 | — | 6.09% | — |
Full EPSS history (15 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 6.3 | 4.0 | MEDIUM |
|
— | — | [email protected] |
| 9.8 | 3.1 | CRITICAL |
|
3.9 | 5.9 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| hp | futuresmart_3 | < 2309118_002276 | cpe:2.3:o:hp:futuresmart_3:*:*:*:*:*:*:*:* |
| hp | futuresmart_3 | < 2309118_002274 | cpe:2.3:o:hp:futuresmart_3:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000067 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_3 | < 2309118_002275 | cpe:2.3:o:hp:futuresmart_3:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000106 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_4 | < 2411278_068111 | cpe:2.3:o:hp:futuresmart_4:*:*:*:*:*:*:*:* |
| hp | futuresmart_4 | < 2411278_068112 | cpe:2.3:o:hp:futuresmart_4:*:*:*:*:*:*:*:* |
| hp | futuresmart_4 | < 2411278_068114 | cpe:2.3:o:hp:futuresmart_4:*:*:*:*:*:*:*:* |
| hp | futuresmart_4 | < 2411278_068113 | cpe:2.3:o:hp:futuresmart_4:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000090 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508125_000009 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000058 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000098 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000072 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000117 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000116 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000089 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000053 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000081 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508125_000003 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000103 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000087 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000075 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508125_000006 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000123 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000111 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000172 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000097 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000063 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000082 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000056 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000084 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508125_000007 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000096 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508125_000002 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508125_000004 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000114 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000071 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000119 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508125_000001 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508125_000011 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508125_000012 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508125_000010 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000068 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000064 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000057 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000088 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000073 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000122 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000055 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000052 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| hp | futuresmart_5 | < 2508402_000101 | cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| https://support.hp.com/us-en/document/ish_11953771-11953793-16/hpsbpi04007 | Vendor Advisory |