CISA adds critical PaperCut vulnerabilities to Known Exploited Catalog

The Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2026-81578 and CVE-2026-82078, affecting PaperCut NG/MF, to its Known Exploited Vulnerabilities catalog. The flaws allow for authentication bypass and unsafe reflection, enabling unauthenticated remote code execution. Security researchers confirmed "point and shoot" exploitation in the wild, leading to full server compromise. Federal agencies are mandated to remediate the vulnerabilities by mid-September to mitigate significant risks to the federal enterprise.

Date:

Country: United States

Conflict: Other

Severity: HIGH

Source: CISA

View this event on the live war map

ACCESS RESTRICTED

COMPLIANCE VERIFICATION REQUIRED

WAR 3.0 provides real-time open-source intelligence (OSINT) on global conflicts. Due to the sensitive nature of this data and international regulatory requirements, you must verify your eligibility to access this platform.