CVE-2026-2234: Hgiga C&cm@il Package Olln-Base
Critical severity, CVSS 9.1. EPSS: 0.5% chance of exploitation in the next 30 days.
C&Cm@il developed by HGiga has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to read and modify any user's mail content.
Affected products
- Hgiga C&cm@il Package Olln-Base: before 7.0-978 (fixed in 7.0-978)
Published 2026-02-09. Last modified 2026-06-17.