HomeIntelligenceBrief
BREACH BRIEF 🟠 High Advisory

PaperCut Replaces Emergency Patches with Maintenance Release for Two Actively Exploited Vulnerabilities

PaperCut issued a maintenance release (v26.0.5, v25.0.13, v24.1.10) that supersedes earlier emergency patches for two flaws under active exploitation. Organizations using PaperCut must upgrade and capture patch evidence to stay audit‑ready.

Verisq™ Intelligence · 📅 September 11, 2026 · 📰 thehackernews.com
🟠
Severity
High
AD
Type
Advisory
🎯
Confidence
High
🏢
Affected
1 sector(s)
Actions
3 recommended
📰
Source
thehackernews.com

PaperCut Replaces Emergency Patches with Maintenance Release for Two Actively Exploited Vulnerabilities

What Happened — PaperCut published a regular maintenance release (NG/MF v26.0.5, v25.0.13, v24.1.10) that supersedes the emergency patches previously issued for two security flaws that are currently being exploited in the wild.

Why It Matters for Trust & Control Assurance

  • Continuous vulnerability monitoring and a formal patch‑management workflow are essential to prevent a gap between emergency fixes and documented change control.
  • Maintaining auditable evidence of patch deployment satisfies the “timely remediation of known weaknesses” control objective that maps to many frameworks (e.g., NIST CSF 2.0).
  • Relying on ad‑hoc emergency patches without a repeatable process can leave an organization exposed to compliance findings and audit questions.

Who Is Affected – Enterprises, schools, hospitals, and other organizations that run PaperCut NG or MF for print‑management services.

Recommended Actions

  1. Verify that all PaperCut endpoints are upgraded to the latest maintenance release.
  2. Integrate vendor security advisories (including PaperCut’s) into your automated vulnerability‑management tooling.
  3. Record patch‑deployment dates, version numbers, and validation results in a central evidence store for audit readiness. Source: The Hacker News

Technical Notes – The two flaws are being actively exploited; the vendor has not disclosed CVE identifiers in the public advisory, but they are described as remote‑code‑execution vectors affecting the print‑management server component. Source: same as above

📰 Original Source
https://thehackernews.com/2026/09/papercut-replaces-emergency-patches.html

This Verisq Intelligence Brief is an independent analysis. Read the original reporting at the link above.

Third-party risk

Does this breach reach you?

Verisq continuously monitors your vendors for breach and ransomware activity, so the question stops being whether it happened and becomes whether it reaches you.

See a live Trust Center →