CVE-2026-70408: Extra Innovation Inc Acmailer Cgi
High severity, CVSS 8.7. EPSS: 0.4% chance of exploitation in the next 30 days.
An incorrect authorization vulnerability exists in acmailer, which may allow a user to create a sub-account that has administrative privileges.
Affected products
- Extra Innovation Inc Acmailer Cgi: before 4.1.2 (fixed in 4.1.2)
- Extra Innovation Inc Acmailer DB: before 1.2.2 (fixed in 1.2.2)
Published 2026-08-19. Last modified 2026-08-28.