CVE-2026-87739
An improper authentication vulnerability in PaperCut MF/NG allows an unauthenticated, remote attacker to trigger report generation. By submitting report generation requests without valid credentials, an attacker can generate reports and gain unauthorized access to sensitive information.
- Published Sep 24, 2026
- CVSS 6.9 medium
- 0.4% chance of exploitation in the next 30 days (EPSS)
Affected software
In the news
- Multiple vulnerabilities in Papercut CERT-FR ·