VulnerabilitiesAug 28, 2026
Hackers Actively Exploiting Pre-Auth RCE Flaw in PaperCut Print Software
Hackers exploit critical pre-auth RCE flaw in PaperCut print software.
Summary
Attackers are actively exploiting a critical remote code execution (RCE) vulnerability in PaperCut NG and PaperCut MF, widely used print management software. The flaw allows unauthenticated attackers to remotely take control of a PaperCut server's configuration, enabling arbitrary code execution. Security researchers at Huntress have confirmed the active exploitation of this vulnerability.
Entities
PaperCut NG (product)PaperCut MF (product)Huntress (vendor)