CVE-2026-44125

Severity CVSS v4.0:
CRITICAL
Type:
Unavailable / Other
Publication date:
08/05/2026
Last modified:
08/05/2026

Description

SEPPmail Secure Email Gateway before version 15.0.4 fails to enforce authorization checks for multiple endpoints in the new GINA UI, allowing unauthenticated remote attackers to access functionality that should require a valid session.

References to Advisories, Solutions, and Tools