CVE-2026-44058: Netatalk
High severity, CVSS 7.2. EPSS: 0.7% chance of exploitation in the next 30 days.
An authentication bypass vulnerability in Netatalk 2.2.2 through 4.4.2 allows a remote privileged user to authenticate as an arbitrary user via the admin auth user mechanism.
Affected products
- Netatalk Netatalk: from 2.2.2, up to and including 4.4.2
Published 2026-05-21. Last modified 2026-07-20.