PaperCut NG/MF · MCPHub · ProfilePress
Date: 2026-09-01 Prepared for: SOC Analysts | Incident Responders | Vulnerability Management | Security Leadership
Executive Summary
CISA added two PaperCut NG/MF vulnerabilities to the KEV Catalog, confirming active exploitation and a chained attack path that can enable unauthenticated configuration changes followed by arbitrary Java bytecode execution. German CERT-Bund also published new high-severity advisories for JFrog Artifactory, Langflow, Gitea, MongoDB, Apache Wicket, Microsoft Edge and related software. A new report describes financially motivated BREEZE COMET activity against Brazilian financial organisations; European exposure is unconfirmed, but payment-system compromise techniques warrant monitoring.
Critical Vulnerabilities
CVE-2026-81578 — PaperCut NG/MF
- Severity: CVSS not provided.
- EPSS: Not available.
- Technical detail: PaperCut NG/MF contains missing authentication for a critical function that permits an unauthenticated remote attacker to modify certain system configuration parameters. CISA identifies the issue as chainable with
CVE-2026-82078, enabling a path from unauthenticated configuration manipulation to code execution under the PaperCut server process. - Exploitation status: Actively exploited; added to CISA KEV on 2026-08-31.
- Remediation: Apply the vendor’s fixed release immediately and meet the CISA remediation deadline of 2026-09-14. Restrict PaperCut administration interfaces to trusted networks, review configuration changes and authentication logs, and investigate unexpected Java processes, service modifications and outbound connections.
CVE-2026-82078 — PaperCut NG/MF
- Severity: CVSS not provided.
- EPSS: Not available.
- Technical detail: An unsafe reflection flaw allows attackers to manipulate system configuration parameters and execute arbitrary Java bytecode already present on the application classpath. The vulnerability is explicitly chainable with
CVE-2026-81578; successful exploitation runs in the security context of the PaperCut server process. - Exploitation status: Actively exploited; added to CISA KEV on 2026-08-31.
- Remediation: Patch urgently by the CISA deadline. Treat externally reachable or unsegmented PaperCut servers as high priority, preserve relevant application and web-server logs, and audit repositories, plugins, service accounts and host persistence following remediation.
CVE-2026-79748 — MCPHub
- Severity: CVSS 9.9.
- EPSS: 0 — no elevated exploitation probability estimate provided.
- Technical detail: The supplied data identifies a vulnerability in MCPHub versions before
0.12.15affecting the/apiinterface, but does not provide sufficient detail to determine the precise attack primitive or authentication requirements. MCPHub deployments centralise and route multiple MCP servers and APIs, increasing potential blast radius if the management plane is compromised. - Exploitation status: No confirmed exploitation reported.
- Remediation: Upgrade to
0.12.15or later. Restrict management endpoints, enforce authentication and least privilege for connected MCP tools, and review API access, tool-invocation and configuration-change logs.
CVE-2026-66047 — ProfilePress
- Severity: CVSS 9.2.
- EPSS: Not available.
- Technical detail: ProfilePress versions before
4.17.2reportedly contain an unauthenticated remote-code-execution vulnerability. An attacker can install and activate arbitrary WordPress plugins, potentially converting a vulnerable site into a web-shell or malware delivery platform. Exposure is highest for internet-facing WordPress installations with the plugin enabled. - Exploitation status: No confirmed exploitation reported in the supplied data.
- Remediation: Upgrade to
4.17.2or later, or disable and remove the plugin where it is not required. Audit WordPress administrator accounts, installed plugins, scheduled tasks, web-server changes and outbound connections for compromise indicators.
CVE-2026-83497 — OpenSearch SQL Plugin
- Severity: CVSS 8.7.
- EPSS: 0 — no elevated exploitation probability estimate provided.
- Technical detail: The OpenSearch SQL plugin permits unrestricted deserialisation of untrusted data. A remote authenticated user with basic read/search permissions may be able to execute arbitrary code, making this particularly relevant where broad analyst or service-account access exists. Affected versions include OpenSearch
2.8through3.6and Amazon OpenSearch Service versions2.9through3.5, according to the supplied data. - Exploitation status: No confirmed exploitation reported.
- Remediation: Apply the vendor-fixed version or service update. Review users with read/search permissions, restrict query access, monitor for unusual SQL requests and process creation, and rotate credentials if exploitation or deserialisation activity is suspected.
ONGOING:
CVE-2026-66384(JFrog Artifactory): actively exploited; patch immediately and audit repositories, credentials and Docker caches.CVE-2026-8452(Citrix NetScaler ADC/Gateway): actively exploited; verify patching and management-interface restrictions.CVE-2026-63520(Microsoft SharePoint): active exploitation and public PoC remain reported; patch and hunt for web shells.CVE-2026-60004(Gitea): KEV remediation deadline passed; patch immediately and inspect Git hook directories.CVE-2019-1068(Microsoft SQL Server): actively exploited; complete remediation.CVE-2026-53362(Linux Kernel): KEV-listed privilege escalation; verify remediation.CVE-2023-49105(ownCloud): actively exploited; patch and validate signing-key configuration.CVE-2026-19478(GitLab): actively exploited; upgrade to a fixed release.CVE-2026-77956(AshAi): critical unauthenticated code execution; upgrade to1.0.0or the fixed commit.CVE-2026-75759(erlef oidcc): patch remains required; review OIDC token-validation and authentication events.
European Advisories
- WID-SEC-2026-3096 — Langflow OSS: New high-severity advisory covering multiple issues, including authenticated remote code execution, SSRF, security-control bypass, data exposure or manipulation and XSS. Patch affected deployments and restrict authenticated access to administrative and flow-execution interfaces.
- WID-SEC-2026-3093 — JFrog Artifactory: New advisory for a flaw that can enable an anonymous remote attacker to obtain administrator privileges. This is related to the previously reported actively exploited Artifactory risk; prioritise emergency remediation and post-patch compromise assessment.
- WID-SEC-2026-3079 — Gitea: New high-severity advisory covering multiple vulnerabilities, including arbitrary code execution, security-control bypass, data exposure or manipulation and denial of service. Patch internet-facing instances first and inspect Git hooks after updating.
- CERT-Bund also published new high-severity advisories for Apache Wicket, Microsoft Edge and MongoDB BI Connector/ODBC Driver. Review affected versions and apply vendor updates; prioritise MongoDB components exposed to untrusted networks and managed browsers on privileged workstations.
- Updates to Samba, Linux Kernel, Keycloak, OpenShift, PHP, Go, GnuTLS, Vim, FreeRDP and related advisories require review against existing remediation plans.
Active Threats and Campaigns
- BREEZE COMET — NEW: Google Threat Intelligence reports financially motivated compromises of Brazilian financial services, retail and e-commerce organisations since 2024. The actor targets payment systems and banking software to conduct fraudulent transfers. European targeting is not established in the supplied data; monitor payment platforms for unauthorised transaction logic changes, suspicious administrative access and anomalous transfers. Source
- TerminalFix ClickFix — ONGOING: Fake Cloudflare CAPTCHA pages continue to trick users into executing PowerShell or Windows Terminal commands; hunt for browser-to-shell execution and reverse-tunnel activity.
- Spring Ring Teams voice phishing — ONGOING: Campaign uses Microsoft Teams and vishing to deploy malware and target enterprise domain controllers; monitor unusual Teams calls, payload delivery and privileged authentication.
- PaperCut NG/MF exploitation — ONGOING: Newly confirmed KEV additions strengthen the urgency of patching and post-remediation hunting.
Security News and Context
- A SANS ISC report describes a Guildma/Astaroth infection delivered through Brazilian Portuguese-language email. Organisations with Portuguese-speaking users or Brazilian business links should monitor for suspicious attachments, script execution and unusual outbound traffic. Source
- SANS also reported that an exposed inference honeypot received coding-agent session data, filesystem output and tool manifests, illustrating the risk of internet-exposed LLM endpoints and unmanaged agent credentials. Source
- Berlin confirmed data theft following a Rhysida ransomware claim. Review relevant exposure, identity and exfiltration telemetry if the organisation has connectivity or supplier relationships with affected municipal services. Source
Recommended Actions
- Patch PaperCut NG/MF for
CVE-2026-81578andCVE-2026-82078; isolate management interfaces and begin compromise hunting. - Verify remediation of actively exploited JFrog Artifactory, Citrix, SharePoint, SQL Server, ownCloud, GitLab and Gitea vulnerabilities.
- Inventory MCPHub, ProfilePress and OpenSearch deployments and apply fixed versions.
- Assess Langflow OSS, MongoDB, Apache Wicket and Edge exposure using the new CERT-Bund advisories.
- Hunt for TerminalFix browser-to-PowerShell activity, reverse tunnels and suspicious Teams-delivered payloads.
- Monitor payment systems and privileged accounts for BREEZE COMET-style manipulation or fraudulent transfers.
- Continue remediation of previously reported items:
CVE-2026-77956,CVE-2026-53362,CVE-2026-8452,CVE-2026-66384andCVE-2026-75759.