PT-2026-95881 · Exim+2 · Exim+2

CVE-2026-94057

·

Published

2026-09-19

·

Updated

2026-09-28

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Exim versions prior to 4.100.1
Description An issue allows SMTP smuggling, a technique where a sender can bypass security filters to deliver messages that differ from what the sending server recorded. This occurs when the received message depends on crafted data sent after a rejection during the DATA processing phase.
Recommendations Update to version 4.100.1 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-94057
USN-8834-1

Affected Products

Exim
Linuxmint
Ubuntu