PaperCut Product Security Update Advisory
Summary
A security update has been released to address a vulnerability discovered in PaperCut products. This update applies to all versions of PaperCut MF and PaperCut NG.
Identified Vulnerabilities
- CVE-2026-81578: An authentication bypass vulnerability in the web management interface of PaperCut NG/MF.
- CVE-2026-82078: An insecure dynamic class loading vulnerability in the database connection functionality of PaperCut NG/MF.
Recommended Actions
- Upgrade PaperCut NG/MF versions 23.X and earlier to the latest version.
- Apply Emergency Patch Release 2 to PaperCut NG/MF versions 24.X, 25.X, and 26.X.
Note
The latest Vulnerability Patches have been released; please update your system following the instructions on the reference site.