Threat Actors Actively Exploiting Critical Sangoma Switchvox Vulnerability (CVE-2026-9586)

AI-generated NewsSnap summary based on source reporting.
Published: 2026-09-02
Category: technology
Source: Help Net Security / The Hacker News

A critical SQL injection vulnerability, CVE-2026-9586, in Sangoma Switchvox SMB Edition 8.3 is being actively exploited by threat actors. The flaw allows unauthenticated attackers to execute arbitrary SQL statements and potentially gain remote code execution on internet-exposed instances of the enterprise VoIP platform. Patches were released in July, but exploitation attempts began on August 30, 2026.

Want more?

Open NewsSnap.ai for the full app experience, including audio, personalization, and more news tools.

Open NewsSnap.ai