CVE-2026-9592: Seppmail Secure Email Gateway & Seppmail Cloud

High severity, CVSS 7.5. EPSS: 0.2% chance of exploitation in the next 30 days.

SEPPmail Secure Email Gateway & SEPPmail Cloud before version 15.0.4.2 allows an attacker to replay & hijack a user session in the GINA web portal, as the session token is disclosed inside the URL and a HTTP header.

Affected products

  • Seppmail Seppmail Secure Email Gateway & Seppmail Cloud

Published 2026-07-17. Last modified 2026-07-17.