Security News

Cybersecurity news aggregator

⚔️
HIGH Attacks Help Net Security

Exploitation of Sangoma Switchvox flaw is underway (CVE-2026-9586)

Active exploitation of CVE-2026-9586, a SQL injection vulnerability in Sangoma Switchvox SMB Edition, is targeting internet-exposed instances to enable unauthorized access. The vulnerability specifically affects Switchvox SMB Edition version 8.3. Organizations should immediately inspect exposed systems for signs of compromise and apply the relevant security patch.
Read Full Article →

A threat actor is actively targeting internet-exposed Sangoma Switchvox instance through a recently patched SQL injection flaw (CVE-2026-9586), and organizations running them should check for signs of compromise immediately. How CVE-2026-9586 works Switchvox is a VoIP-based unified communications platform built on the open-source Asterisk engine and aimed at small and medium-size businesses. It can be deployed on-premises, in the cloud, or on virtualized infrastructure. CVE-2026-9586, found in Sangoma Switchvox SMB Edition 8.3, allows attackers to … More → The post Exploitation of Sangoma Switchvox flaw is underway (CVE-2026-9586) appeared first on Help Net Security .

Share this article