PaperCut Replaces Emergency Patches With Fixes for Two Actively Exploited Flaws
What happened
PaperCut released maintenance versions 26.0.5, 25.0.13, and 24.1.10 to replace emergency patches for two actively exploited authentication bypass flaws, CVE-2026-81578 and CVE-2026-82078. GreyNoise and Blackpoint Cyber reported that a suspected Russian-speaking actor used AI agents to weaponize these vulnerabilities, compromising at least 395 organizations across 48 countries.
Why it ranks #1
PaperCut released maintenance versions 26.0.5, 25.0.13, and 24.1.10 to replace emergency patches for two actively exploited authentication bypass flaws, CVE-2026-81578 and CVE-2026-82078, which GreyNoise and Blackpoint Cyber reported were used by a suspected Russian-speaking actor to compromise at least 395 organizations across 48 countries.
Who should care
CISOs and security leaders, Identity and access teams, IT and platform operations, SOC and incident response teams
What to do
Move PaperCut customers running an emergency patch build to a maintenance release.
- Impact
- critical
- Urgency
- immediate
- Confidence
- high
- Scope
- enterprise
- Status
- actively exploited