SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-49217

HIGH · CVSS 7.5 EPSS 0.25% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-20 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

The Mailu mail server, when deployed using Docker and prior to version 2024.06.52, is vulnerable due to a missing authorization check in its admin REST API, allowing unauthenticated attackers to bypass IP restrictions and modify user tokens. This vulnerability poses a significant risk as it can lead to unauthorized access and manipulation of user data. Organizations using Mailu should prioritize upgrading to the patched version or disabling the REST API to mitigate potential exploitation.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-49217
Severity
HIGH
CVSS
7.5
EPSS
0.25%
Docker

Original NVD Description

Mailu is a mail server as a set of Docker images. Prior to version 2024.06.52, a missing authorization check in the Mailu admin REST API allows any unauthenticated attacker to remove any potential IP restriction or update the comment field from any existing user token provided the REST API is enabled. Upgrade to Mailu 2024.06.52 to receive a patch or, as a workaround, turn the REST API off.