LIVE · cybersecurity feed
Live wire
vendor1 exploited in the wild

Sangoma

5 CVEs published in the last four months and 1 stories. Exploited flaws first.

Critical2
High3
Medium0
Exploited (KEV)1

Patch these first

CVECVSSSeverityProductSummaryPublished
CVE-2026-9586exploited9.8criticalswitchvoxAn unauthenticated SQL injection vulnerability exists in Sangoma Switchvox SMB Edition 8.3 (104997).51d ago

All recent CVEs

CVECVSSSeverityProductSummaryPublished
CVE-2026-463769.8criticalfreepbxFreePBX is an open source IP PBX.100d ago
CVE-2026-9586exploited9.8criticalswitchvoxAn unauthenticated SQL injection vulnerability exists in Sangoma Switchvox SMB Edition 8.3 (104997).51d ago
CVE-2026-442388.8highfreepbxFreePBX is an open source IP PBX.100d ago
CVE-2026-442398.8highfreepbxFreePBX is an open source IP PBX.100d ago
CVE-2026-442378.1highfreepbxFreePBX is an open source IP PBX.100d ago

Filter the full tracker by Sangoma

Our coverage of Sangoma

CVE-2026-9586

Hackers exploit Sangoma Switchvox flaw to deploy reverse shells

Attackers are actively exploiting CVE-2026-9586, an unauthenticated SQL injection vulnerability in the Sangoma Switchvox VoIP platform that can lead to remote code execution. [...]