CVE-2026-2748: Seppmail

Medium severity, CVSS 5.3. EPSS: 0.2% chance of exploitation in the next 30 days.

SEPPmail Secure Email Gateway before version 15.0.1 improperly validates S/MIME certificates issued for email addresses containing whitespaces, allowing signature spoofing.

Affected products

  • Seppmail Seppmail: before 15.0.1 (fixed in 15.0.1)

Published 2026-03-04. Last modified 2026-06-17.