CyberHappenings logo

Track cybersecurity events as they unfold. Sourced timelines. Filter, sort, and browse. Fast, privacy‑respecting. No invasive ads, no tracking.

Critical SmarterMail Arbitrary File Upload Vulnerability Disclosed

First reported
Last updated
1 unique sources, 1 articles

Summary

Hide ▲

The Cyber Security Agency of Singapore (CSA) has disclosed a critical vulnerability (CVE-2025-52691) in SmarterMail email software, allowing unauthenticated remote code execution via arbitrary file upload. The flaw affects versions up to Build 9406 and has been patched in Build 9413 and later. SmarterMail is used by various web hosting providers, and users are advised to update to the latest version (Build 9483) for protection.

Timeline

  1. 30.12.2025 18:28 1 articles · 23h ago

    CSA Discloses Critical SmarterMail Vulnerability

    The Cyber Security Agency of Singapore (CSA) issued an alert on December 30, 2025, regarding a critical vulnerability (CVE-2025-52691) in SmarterMail email software. The flaw allows unauthenticated remote code execution via arbitrary file upload. The vulnerability affects versions up to Build 9406 and has been patched in Build 9413 and later. Users are advised to update to the latest version (Build 9483) for protection.

    Show sources

Information Snippets