
PaperCut has released an emergency patch for vulnerabilities CVE-2026-82078 and CVE-2026-81578, which are currently being exploited in its print management software, PaperCut NG and MF.
Both vulnerabilities carry severity scores exceeding 8.8 out of 10, prompting the company to urge customers to restrict server web access to trusted IP addresses immediately.
Cybersecurity firm Huntress confirmed that at least two customers have been impacted by the campaign, which follows a history of ransomware gangs using similar flaws to gain network access.