PaperCut Product Security Update Advisory

PaperCut Product Security Update Advisory

Summary


A security update has been released to address a vulnerability discovered in PaperCut products. This update applies to all versions of PaperCut MF and PaperCut NG.

Identified Vulnerabilities


  • CVE-2026-81578: An authentication bypass vulnerability in the web management interface of PaperCut NG/MF.
  • CVE-2026-82078: An insecure dynamic class loading vulnerability in the database connection functionality of PaperCut NG/MF.

Recommended Actions


  • Upgrade PaperCut NG/MF versions 23.X and earlier to the latest version.
  • Apply Emergency Patch Release 2 to PaperCut NG/MF versions 24.X, 25.X, and 26.X.

Note


The latest Vulnerability Patches have been released; please update your system following the instructions on the reference site.