SEPTEMBER 26, 2026
Live Feed
Back to database
Case File

CVE-2026-94055

LOW · CVSS 3.7 EPSS 0.29%

Source: NVD + CISA KEV + EPSS · Published 2026-09-19 · Last synced 2026-09-26

CyberRota Analysis

AI-Generated

Exim versions prior to 4.100.1 are vulnerable to a use-after-free issue when specific non-default TLS configurations are employed with GnuTLS. This vulnerability could potentially lead to application crashes or unexpected behavior, although it is classified as low severity. Organizations utilizing Exim with these TLS settings should prioritize patching to mitigate any associated risks.

CVE
CVE-2026-94055
Severity
LOW
CVSS
3.7
EPSS
0.29%

Original NVD Description

Exim before 4.100.1, when certain non-default TLS settings are used with GnuTLS, has a use-after-free.

Related CVEs

Other vulnerabilities affecting the same vendor(s)