SmarterMail Auth Bypass Exploited in the Wild Two Days After Patch ReleaseThe Hacker News·Jan 30, 04:24 UTC · Jan 30, 2026Exploit / PoC in the wildCVE-2025-52691CVE-2026-2376060
U.S. CISA adds Microsoft Office, GNU InetUtils, SmarterTools SmarterMail, and Linux Kernel flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jan 27, 14:54 UTC · Jan 27, 2026Exploit / PoC in the wildCVE-2018-14634CVE-2025-52691CVE-2026-21509+2 CVEs60
Shadowserver finds 6,000+ likely vulnerable SmarterMail servers exposed onlineSecurity Affairs·Jan 27, 15:28 UTC · Jan 27, 2026Exploit / PoC in the wildCVE-2026-2376060
U.S. CISA adds SmarterTools SmarterMail and React Native Community CLI flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 6, 09:22 UTC · Feb 6, 2026Exploit / PoC in the wildCVE-2025-11953CVE-2026-2442360
⚡ Weekly Recap: Proxy Botnet, Office Zero-Day, MongoDB Ransoms, AI Hijacks & New ThreatsThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-1281CVE-2026-134060