CVE-2026-44129Disclosure

LOWCVSS 8.3 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

SEPPmail Secure Email Gateway before version 15.0.4 contains a server-side template injection vulnerability in the new GINA UI because an endpoint accepts attacker-controlled template, allowing remote attackers to execute arbitrary template expressions and potentially achieve remote code execution depending on the enabled template plugins.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-1336

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 4 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 3 classified signals
  • General: 1 classified signal
  • Peaked 3d ago at 1 mentions (2026-05-09); latest day: 1
  • 4 total mentions across 4 days

Deep dive

Activity timeline4 mentions / 4d
00111Mentions · 2026-05-09: 1Mentions · 2026-05-30: 1Mentions · 2026-06-01: 1Mentions · 2026-06-05: 1Technical Details · 2026-05-09: 1Technical Details · 2026-06-05: 105-0905-3006-0106-05
Signal classification2 categories
Disclosure
375.0%
General
125.0%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-05-091
Disclosure1
2026-05-301
Disclosure1
2026-06-011
General1
2026-06-051
Disclosure1
Full discourse4 posts
  • IntegSec@integ_sec
    Disclosure

    CVE-2026-44129: SEPPmail GINA UI Template Injection - What It Means for Your Business and How to Respond https://hubs.li/Q04khvNp0

    Post summary

    A short blog post link referencing CVE-2026-44129, describing it as a SEPPmail GINA UI Template Injection and outlining business implications and response actions.

    0000030
    32 followersView on X
  • ケイ | IT・セキュリティ系副業Webライター@Teeeda_worker
    General

    【脆弱性情報】 CVE-2026-44129 SEPPmail Secure Email Gatewayの脆弱性について https://www.cybernote.click/2026/05/23/%e3%80%90%e8%84%86%e5%bc%b1%e6%80%a7%e6%83%85%e5%a0%b1%e3%80%91-cve-2026-44129-seppmail-secure-email-gateway%e3%81%ae%e8%84%86%e5%bc%b1%e6%80%a7%e3%81%ab%e3%81%a4%e3%81%84%e3%81%a6/ #IT #Security #cybersecurity

    Post summary

    The post merely announces CVE-2026-44129 for SEPPmail Secure Email Gateway, lacking details about proofs, exploitation, fixes, or technical specifics.

    0000048
    211 followersView on X
  • ケイ | IT・セキュリティ系副業Webライター@Teeeda_worker
    Disclosure

    【脆弱性情報】 CVE-2026-44129 SEPPmail Secure Email Gatewayの脆弱性について https://www.cybernote.click/2026/05/23/%e3%80%90%e8%84%86%e5%bc%b1%e6%80%a7%e6%83%85%e5%a0%b1%e3%80%91-cve-2026-44129-seppmail-secure-email-gateway%e3%81%ae%e8%84%86%e5%bc%b1%e6%80%a7%e3%81%ab%e3%81%a4%e3%81%84%e3%81%a6/ #IT #Security #cybersecurity

    Post summary

    The tweet simply announces a vulnerability (CVE‑2026‑44129) for SEPPmail Secure Email Gateway and links to an external article, without providing PoC, exploit, or patch details.

    0000045
    209 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-44129 SEPPmail Secure Email Gateway before version 15.0.4 contains a server-side template injection vulnerability in the new GINA UI because an endpoint accepts attacker-co… https://www.cve.org/CVERecord?id=CVE-2026-44129

    Post summary

    The CVE identifies a server‑side template injection flaw in SEPPmail Secure Email Gateway's GINA UI prior to version 15.0.4.

    0000081
    57.5K followersView on X

Explore more