← Back to feed
Vulnerabilities & PatchesEmerging1 sourceSep 1, 2026 · 08:13via Security Affairs

U.S. CISA adds PaperCut NG/MF flaws to its Known Exploited Vulnerabilities catalog

Brief

U. S. Cybersecurity and Infrastructure Security Agency (CISA) adds PaperCut NG/MF flaws to its Known Exploited Vulnerabilities catalog.

The U. S. Cybersecurity and Infrastructure Security Agency (CISA) added the following vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog :

  • CVE-2026-81578  (CVSS score of 8.8) PaperCut NG/MF Missing Authentication for Critical Function Vulnerability
  • CVE-2026-82078  (CVSS score of 9.4) PaperCut NG/MF Unsafe Reflection Vulnerability

PaperCut, the print management software running in schools, hospitals, and offices worldwide, recently confirmed that a pre-authentication remote code execution flaw, tracked as CVE-2026-81578, is being actively exploited against real customers.

Read more on Security Affairs