Metasploit Exploit Targets Actively Exploited PaperCut NG/MF Zero-Day RCE Chain
Brief
A new Metasploit Framework module is poised to make a recently disclosed, actively exploited PaperCut NG and MF zero-day chain more accessible.
Rapid7 contributor Stephen Fewer submitted pull request #21842 for CVE-2026-81578 and CVE-2026-82078, flaws that combine authentication bypass with remote code execution.
The development arrives days after PaperCut confirmed customer incidents. Every PaperCut NG and MF version may be affected.
Metasploit Exploit Targets Actively Exploited
Emergency Patch Release 2 is available for supported 24. x, 25. x, and 26. x releases, and administrators who deployed the first emergency patch must install it because it adds protections beyond the original fix.
