PaperCut Vulnerabilities CVE-2026-81578 and CVE-2026-82078 Added to CISA KEV Database

Published:

CHAPTER X // CYBER AWARENESS CAMPAIGN
BEYOND THE BALLROOM
[C://ME] // CHAPTER X

REQUEST THE MEDIA KIT

Tell us where to send the Beyond the Ballroom media deck. Every field is required.

We will use these details to respond to your media-kit request. Privacy Policy

Advisory Date: August 28, 2026
Last Updated: August 31, 2026

Recent vulnerabilities have been identified in PaperCut products, specifically affecting versions of PaperCut MF and PaperCut NG. As of August 27, 2026, the following versions are impacted:

  • PaperCut MF
    • Prior to v24 Emergency Patch Release 2
    • Prior to v25 Emergency Patch Release 2
    • Prior to v26 Emergency Patch Release 2
  • PaperCut NG
    • Prior to v24 Emergency Patch Release 2
    • Prior to v25 Emergency Patch Release 2
    • Prior to v26 Emergency Patch Release 2

Exploitation Status

Open-source intelligence has indicated that vulnerabilities identified as CVE-2026-81578 and CVE-2026-82078 are currently being exploited in the wild. This raises significant concerns for organizations using the affected versions of PaperCut software.

Official Response and Recommendations

On August 31, 2026, the Cybersecurity and Infrastructure Security Agency (CISA) added both CVE-2026-81578 and CVE-2026-82078 to their Known Exploited Vulnerabilities (KEV) Database. This inclusion highlights the urgency for users and administrators to take immediate action.

The Cyber Centre advises all users of PaperCut MF and PaperCut NG to review the advisory and apply any necessary updates as they become available. It is crucial to ensure that systems are running the latest versions to mitigate the risk of exploitation.

For further details and updates, please refer to the official advisory from the Cyber Centre: Cyber.gc.ca.

Follow Cyber Warriors Middle East for further cybersecurity resources, advisories and technical guidance.

Cyber Warriors Conclave Chapter X — Beyond the Ballroom

Related articles

Recent articles

INS Trishul arrives in Toulon with upgraded BrahMos missile capability

INS Trishul, the Indian Navy’s Talwar-class frigate, arrived at Toulon naval base in France on September 22, 2026, as part of its operational deployment...

Cisco Talos Unveils CAIRN Framework to Track AI-Integrated Malware with Autonomous Command Systems

Cybersecurity researchers at Cisco Talos have introduced an open-source framework called the Cognitive Artifact Intelligence Research Network (CAIRN) to help classify and analyze AI-integrated...

FQ-42 Vengeance unmanned fighter aircraft displayed at AFA 2026

The FQ-42 Vengeance unmanned fighter aircraft, developed by General Atomics, was prominently displayed at the Air, Space and Cyber conference on September 14, 2026....

Meta’s AI Assistant Muse Exposed by Zero-Day Vulnerability, Prompting Amazon to Block Access

Meta's new AI assistant, Muse, has come under scrutiny following the discovery of a zero-day vulnerability that allows locally run applications and terminal commands...