CVE-2026-9592: Seppmail Secure Email Gateway & Seppmail Cloud
High severity, CVSS 7.5. EPSS: 0.2% chance of exploitation in the next 30 days.
SEPPmail Secure Email Gateway & SEPPmail Cloud before version 15.0.4.2 allows an attacker to replay & hijack a user session in the GINA web portal, as the session token is disclosed inside the URL and a HTTP header.
Affected products
- Seppmail Seppmail Secure Email Gateway & Seppmail Cloud
Published 2026-07-17. Last modified 2026-07-17.