CVE-2026-27443
S/MIME Decryption Tag Sanitization Bypass
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
SEPPmail Secure Email Gateway before version 15.0.1 does not properly sanitize the headers from S/MIME protected MIME entities, allowing an attacker to control trusted headers.
| CWE | CWE-20 |
| Vendor | seppmail |
| Product | secure email gateway |
| Published | Mar 4, 2026 |
| Last Updated | Mar 4, 2026 |
Stay Ahead of the Next One
Get instant alerts for seppmail secure email gateway
Be the first to know when new unknown vulnerabilities affecting seppmail secure email gateway are published β delivered to Slack, Telegram or Discord.
Get Free Alerts β
Free Β· No credit card Β· 60 sec setup
Affected Versions
SEPPmail / Secure Email Gateway
0 < 15.0.1
References
Credits
Andris Suter-DΓΆrig Matteo Scarlata Kenny Paterson