Sangoma Switchvox Vulnerabilities Exploited in the Wild

2026-09-04T13:24:00Z6278bce99ad5d6d2b0977d633456089beed06fde1b6bdaae3eac1c82c2147ba5
CVE-2026-6471CVE-2026-9586AI securityGoogle ChromePostGREShellPostgreSQLSQL injectionSangoma SwitchvoxV8VMware FusionVMware Workstationagent securitydata breachdata leakdatabase takeoverexploitation-in-the-wildhost code executionprivilege escalationransomwareremote code executionvirtualizationvulnerabilityzero-day

What happened

SecurityWeek RSS content reports multiple high-impact cybersecurity issues, including in-the-wild exploitation of an unauthenticated Sangoma Switchvox SQL injection vulnerability enabling remote code execution, a PostgreSQL replication flaw enabling code execution and persistent superuser backdoors, critical VMware Workstation/Fusion host-code-execution vulnerabilities, and a Chrome zero-day involving V8 type confusion. It also reports a major Manchester Airports Group data leak affecting approximately 8.8 million people. Several additional items concern AI security products and corporate or M

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityweek
Record identifier
6278bce99ad5d6d2b0977d633456089beed06fde1b6bdaae3eac1c82c2147ba5
Enrichment time
2026-09-04T13:24:00Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.