PaperCut Issues Second Emergency Patch for Actively Exploited Print Management Vulnerabilities
Multiple bypass methods discovered; users urged to update immediately

Key Takeaways
- PaperCut released a second emergency patch for two actively exploited vulnerabilities.
- Researchers discovered multiple bypass methods for the initial fixes.
- The vulnerabilities affect PaperCut NG and MF print management software.
- Active exploitation in the wild has been confirmed.
- Users are urged to apply the latest patch immediately.
Quick answers
- What happened?
- PaperCut has released a second emergency security update for two actively exploited vulnerabilities in PaperCut NG and MF print management software. Researchers identified multiple ways to bypass the initial fixes, indicating persistent exploitation risk. The company urges all users to apply the latest patch immediately.
- Which products are affected?
- PaperCut NG, PaperCut MF
- What should defenders do?
- Apply the latest emergency security update provided by PaperCut immediately. Monitor official advisories for additional guidance and ensure all PaperCut NG and MF instances are running the patched version.
PaperCut has released a second emergency security update for two actively exploited vulnerabilities in its PaperCut NG and MF print management software. According to reports, researchers discovered multiple methods to bypass the initial fixes, prompting the company to issue an updated patch. The vulnerabilities are reported to be actively exploited in the wild, allowing potential remote code execution or unauthorized access to print management systems. PaperCut NG and MF are widely used print management solutions across enterprise environments. The firm emphasized that users should apply the latest security update as soon as possible to mitigate the risk. No specific CVE identifiers were disclosed in the initial report, and technical details regarding the exploitation methods remain limited. The incident highlights the challenges in patching actively exploited flaws and the need for rapid defensive action.
Security Details
Two actively exploited vulnerabilities in PaperCut NG and MF print management software. Researchers discovered multiple bypass methods for the initial fixes, indicating persistent exploitation risk. Details on specific CVEs, exploitation techniques, and patch versions were not fully detailed in the source summary.
Affected products
PaperCut NG, PaperCut MF
Mitigation
Apply the latest emergency security update provided by PaperCut immediately. Monitor official advisories for additional guidance and ensure all PaperCut NG and MF instances are running the patched version.
Sources
BleepingComputer
PaperCut releases second emergency patch for exploited flaws
Aug 28, 2026 · 19:08
Original link
Related Security News

Official MCP Python SDK Flaw Can Let Malicious Servers Steal OAuth Credentials
The maintainers of the official MCP Python SDK disclosed a security vulnerability that could allow a malicious server to trick applications into divulging OAuth credentials. The issue affects the handling of client secrets, authorization codes, and PKCE proof keys when communicating with token endpoints.
CISA Adds Two Citrix NetScaler Vulnerabilities to Known Exploited Catalog
The Cybersecurity and Infrastructure Security Agency (CISA) has added two new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog based on evidence of active exploitation. CVE-2026-88771 involves improper input validation and CVE-2026-88772 involves improper restriction of operations within the bounds of a memory buffer, both affecting Citrix NetScaler products. The additions trigger remediation requirements under Binding Operational Directive 26-04 for Federal Civilian Executive Branch agencies.



