Close Menu
NCIJ Network NCIJ Network
    What's Hot

    Populism poses serious challenge to independent central banks, Bailey says | Bank of England

    September 4, 2026

    Nigel Farage meeting a ‘shadowy foreign donor’? It can only be another establishment stitch-up | Marina Hyde

    September 4, 2026

    Oh good, looks like yet another swarm of rogue AI agents from OpenAI

    September 4, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Populism poses serious challenge to independent central banks, Bailey says | Bank of England
    • Nigel Farage meeting a ‘shadowy foreign donor’? It can only be another establishment stitch-up | Marina Hyde
    • Oh good, looks like yet another swarm of rogue AI agents from OpenAI
    • Sangoma Switchvox Vulnerabilities Exploited in the Wild
    • Bitcoin Rallies Over $81,000 And Brings Stocks With It
    • MISC explores consortium role in potential Yinson privatization
    • Did North Dakota mayor sue Canadian wind farm for using ‘American wind’? Claim is full of hot air
    • Uganda’s King Oyo death: Body of world’s youngest traditional monarch returns amid succession row
    • About
      • Our Team
      • Editorial Policy
      • Editorial Independence
      • International Support
    • Trust & Standards
      • AI Usage Policy
      • Conflict of Interest Policy
      • Corrections Policy
      • Ethics Policy
      • Fact-Checking Policy
      • Source Protection
    • Get Involved
      • Guide for Sources
      • Support Independent Journalism
    • Legal
      • Cookie Policy
      • Privacy Policy
      • Terms of Use
    Facebook X (Twitter) Instagram
    NCIJ Network NCIJ Network
    Friday, September 4
    • Home
    • World
    • Ai
    • Business
    • Politics
    • Health
    • Crypto
    • Science
    • Technology
    • Cybersecurity
    • Defense & Security
    • Economy
    • Energy
    • Europe
    • More
      • Fact Check
      • Investigations
      • Opinion & Analysis
      • Environment
    NCIJ Network NCIJ Network
    Home»Cybersecurity

    Sangoma Switchvox Vulnerabilities Exploited in the Wild

    NCIJ NETWNCIJ NETWORKBy NCIJ NETWNCIJ NETWORKSeptember 4, 2026 Cybersecurity No Comments2 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Threat actors have been exploiting a critical-severity vulnerability in the enterprise VoIP telephony management solution Sangoma Switchvox, Horizon3 and CISA warn.

    Tracked as CVE-2026-9586 (CVSS score of 9.3) and described as an unauthenticated SQL injection issue, the security defect can be exploited remotely for arbitrary code execution.

    It resides in an endpoint that processes XML content, which did not perform sanitization or parameterization when concatenating the user-controlled PhoneIP value into PostgreSQL queries.

    “An unauthenticated remote attacker can execute arbitrary SQL statements against the backend PostgreSQL database using a single crafted request, including database operations and remote code execution,” a NIST advisory reads.

    On Tuesday, cybersecurity firm Horizon3 warned that threat actors had started exploiting CVE-2026-9586 in the wild and shared indicators of compromise (IoCs) to help organizations identify potential intrusions.

    On Wednesday, the US cybersecurity agency CISA added the security flaw to its Known Exploited Vulnerabilities (KEV) catalog along with six other issues, including the JFrog Artifactory bug and two SonicWall SMA1000 zero-days recently flagged as exploited.

    Advertisement. Scroll to continue reading.

    The fifth vulnerability added to CISA KEV is CVE-2026-48710, an HTTP request/response smuggling flaw in the lightweight ASGI framework Starlette that was publicly disclosed in May. Hackers have been exploiting it since May, Horizon3 said in early June.

    Next in line is CVE-2026-49869, a critical-severity command injection defect in the open source orchestration platform Kestra that was disclosed in June and flagged as exploited by Microsoft last week.

    The last vulnerability added to CISA’s KEV list on Wednesday is CVE-2026-59822, a high-severity authentication bypass in LiteLLM. Last week, Wiz said its honeypots caught exploit attempts targeting this bug.

    CISA is urging federal agencies to patch these vulnerabilities within three days, except for the Kestra and Starlette flaws, which should be patched within two weeks, in line with BOD 26-04’s recommendations.

    Related: Over 3 Million WordPress Sites Affected by Migration Plugin Vulnerability

    Related: Cisco Warns of Unpatched Secure Email Flaws, Patches Critical Switch Vulnerabilities

    Related: Exploit Published for Fresh Cleo Harmony Vulnerability

    Related: Hackers Start Exploiting Critical Langflow Vulnerability

    Exploited Sangoma Switchvox Vulnerabilities wild
    NCIJ NETWNCIJ NETWORK
    • Website

    Keep Reading

    Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day

    Google warns of new Chrome zero-day flaw exploited in attacks

    Over 440,000 Exploit Attempts Target Super Forms and Elementor Pro RCE Flaws

    153 Million Driver License Images Offered on Dark Web

    Plex Urges Immediate Updates After Patching Multiple Undisclosed Security Flaws

    Shai-Hulud’s Reach Just Grew to 469 Credential Locations. Here’s What That Means

    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    Populism poses serious challenge to independent central banks, Bailey says | Bank of England

    September 4, 2026

    Nigel Farage meeting a ‘shadowy foreign donor’? It can only be another establishment stitch-up | Marina Hyde

    September 4, 2026

    Oh good, looks like yet another swarm of rogue AI agents from OpenAI

    September 4, 2026

    Sangoma Switchvox Vulnerabilities Exploited in the Wild

    September 4, 2026
    Latest Posts

    Interpol Leverages Global System to Curtail Fraud Payments

    July 31, 2026

    Repeat founder Ryan Williams raises $10M seed for an AI startup for private credit managers

    July 31, 2026

    Concerns raised over Northumberland council’s £900m debt

    July 31, 2026

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    NCIJ Network is an independent digital news platform delivering trusted investigative journalism, European and global news, in-depth analysis, and fact-based reporting with accuracy, transparency, and integrity.

    Facebook X (Twitter) Instagram Pinterest YouTube

    Populism poses serious challenge to independent central banks, Bailey says | Bank of England

    September 4, 2026

    Nigel Farage meeting a ‘shadowy foreign donor’? It can only be another establishment stitch-up | Marina Hyde

    September 4, 2026

    Oh good, looks like yet another swarm of rogue AI agents from OpenAI

    September 4, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.