Sangoma Switchvox Vulnerabilities Exploited in the Wild
2026-09-04T13:24:00Z•6278bce99ad5d6d2b0977d633456089beed06fde1b6bdaae3eac1c82c2147ba5
CVE-2026-6471CVE-2026-9586AI securityGoogle ChromePostGREShellPostgreSQLSQL injectionSangoma SwitchvoxV8VMware FusionVMware Workstationagent securitydata breachdata leakdatabase takeoverexploitation-in-the-wildhost code executionprivilege escalationransomwareremote code executionvirtualizationvulnerabilityzero-day
What happened
SecurityWeek RSS content reports multiple high-impact cybersecurity issues, including in-the-wild exploitation of an unauthenticated Sangoma Switchvox SQL injection vulnerability enabling remote code execution, a PostgreSQL replication flaw enabling code execution and persistent superuser backdoors, critical VMware Workstation/Fusion host-code-execution vulnerabilities, and a Chrome zero-day involving V8 type confusion. It also reports a major Manchester Airports Group data leak affecting approximately 8.8 million people. Several additional items concern AI security products and corporate or M
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityweek
- Record identifier
- 6278bce99ad5d6d2b0977d633456089beed06fde1b6bdaae3eac1c82c2147ba5
- Enrichment time
- 2026-09-04T13:24:00Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.