CISA Warns of Multiple PaperCut NG/MF Vulnerabilities Actively Exploited in Attacks
ID: 9b685b8e-3f9d-5860-8b52-c2d300368ef3
STIX ID: report--9b685b8e-3f9d-5860-8b52-c2d300368ef3
Feed Name: cybersecurityNews.com
CISA added two critical PaperCut NG/MF vulnerabilities (CVE-2026-81578: missing authentication, and CVE-2026-82078: unsafe reflection) to its Known Exploited Vulnerabilities catalog after evidence of exploitation. The flaws can be chained to allow unauthenticated modification of server configuration and execution of arbitrary Java bytecode in the PaperCut server context, risking remote compromise of internet-exposed deployments; CISA set a remediation deadline for federal agencies and recommends immediate mitigation, access restriction, and forensic review where exposure occurred.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
